XaFF-XaFF / WinREPLLinks
WinREPL is a "read-eval-print loop" shell on Windows that is useful for testing/learning x86 and x64 assembly.
☆17Updated 3 years ago
Alternatives and similar repositories for WinREPL
Users that are interested in WinREPL are comparing it to the libraries listed below
Sorting:
- Standalone Metasploit-like XOR encoder for shellcode☆50Updated last year
- One Click Tool to Scan All the Enabled Protection of current Windows NT Kernel☆43Updated 2 years ago
- Proof of Concept example for abusing Process Hacker 2 (v2.39.124)☆23Updated last year
- A payload delivery system which embeds payloads in an executable's icon file!☆74Updated 2 years ago
- the Open Source and Pure C++ Packer for eXecutables☆21Updated 2 years ago
- API Hammering with C++20☆49Updated 3 years ago
- Listing UDP connections with remote address without sniffing.☆31Updated 2 years ago
- ☆35Updated 2 years ago
- Implementation of ITaskHandler in C++☆14Updated 2 years ago
- Simple PoC to locate hooked functions by EDR in ntdll.dll☆46Updated 2 years ago
- 64bit WIndows 10 shellcode dat pops dat calc - Dynamic & Null Free☆65Updated 2 years ago
- Win32 keylogger that supports all (non-ime using) languages correctly☆53Updated 2 years ago
- BYOVD Technique Example using viragt64 driver☆68Updated last year
- ☆60Updated 3 years ago
- Read Memory without ReadProcessMemory for Current Process☆89Updated 3 years ago
- ☆89Updated last year
- Windows AppLocker Driver (appid.sys) LPE☆72Updated last year
- ☆39Updated 2 years ago
- Enabled / Disable LSA Protection via BYOVD☆81Updated 4 years ago
- Your NTDLL vaccine from modern direct syscall methods.☆36Updated 3 years ago
- Small PoC of using a Microsoft signed executable as a lolbin.☆140Updated 2 years ago
- A C++ PoC implementation for enumerating Windows Fibers directly from memory☆21Updated last year
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated 2 years ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆27Updated 2 years ago
- A fully compatible replacement of Windows NT NtCreateLowBoxToken syscall - precisely restored from reverse engineering☆42Updated 7 months ago
- improving zerosums smbdoor - a silent remote backdoor which abuses undoc. APIs in srvnet.sys☆49Updated 2 years ago
- Bypass UAC elevation on Windows 8 (build 9600) & above.☆57Updated 3 years ago
- Proof-of-Concept for CVE-2024-26218☆55Updated last year
- CVE-2018-6066 using VBA☆68Updated 3 years ago
- Former UEFI Firmware Rootkit Replicating MoonBounce / ESPECTRE☆11Updated 3 years ago