XaFF-XaFF / Heap-Injection
Example of C# heap injector for x64 and x86 shellcodes
☆13Updated 2 years ago
Alternatives and similar repositories for Heap-Injection:
Users that are interested in Heap-Injection are comparing it to the libraries listed below
- Simple keylogger written in C# which is ready for modifications.☆13Updated 3 years ago
- Listing UDP connections with remote address without sniffing.☆30Updated last year
- A proof of concept of real custom GetProcAddress and GetModuleBaseAddress☆19Updated 2 years ago
- Reduce Dynamic Analysis Detection Rates With Built-In Unhooker, Anti Analysis Techniques, And String Obfuscator Modules.☆18Updated 2 years ago
- Evilbytecode-Gate resolves Windows System Service Numbers (SSNs) using two methods: analyzing the Guard CF Table in ntdll.dll and parsing…☆18Updated 2 weeks ago
- Overwrite MBR and add own custom message☆15Updated 4 years ago
- A simple PE loader.☆25Updated 2 years ago
- Reflective DLL that hooks the creation of the UAC prompt popped by explorer.exe for privilege escalation.☆21Updated 4 years ago
- Process Hollowing demonstration & explanation☆35Updated 3 years ago
- Herpaderply Hollowing - a PE injection technique, hybrid between Process Hollowing and Process Herpaderping☆51Updated 2 years ago
- Your NTDLL vaccine from modern direct syscall methods.☆35Updated 2 years ago
- Bypass UAC by abusing shell protocol handlers☆14Updated 3 years ago
- C# loader capable of running stage-1 from remote url, file path as well as file share☆17Updated 2 years ago
- Research into removing strings & API call references at compile-time (Anti-Analysis)☆24Updated 8 months ago
- Process Injection: APC Injection☆29Updated 4 years ago
- using the Recycle Bin to insure persistence☆12Updated 2 years ago
- Hooking Heavens Gate in a weekend☆13Updated 3 years ago
- Manually perform syscalls without going through any external API or DLL.☆18Updated last year
- Bypass UAC at any level by abusing the Task Scheduler and environment variables☆31Updated 3 years ago
- API Hammering with C++20☆45Updated 2 years ago
- using the gpu to hide your payload☆54Updated 2 years ago
- Rasta's mouse AMSI patch but with function that makes it undetectable.☆12Updated 3 years ago
- Get your data from the resource section manually, with no need for windows apis☆58Updated 3 months ago
- A fast method to intercept syscalls from any user-mode process using InstrumentationCallback and detect any process using Instrumentation…☆26Updated last year
- 🗡️ A multi-user malleable C2 framework targeting Windows. Written in C++ and Python☆43Updated 11 months ago
- Change hash for a signed pe☆15Updated last year
- x64 Windows privilege elevation using anycall☆21Updated 3 years ago
- Just another casual shellcode native loader☆24Updated 3 years ago
- https://github.com/janoglezcampos/c_syscalls with the ASM rewritten by myself for Visual Studio's Compiler.☆30Updated 7 months ago