aaaddress1 / theArk
Windows x86 PE Packer In C++
☆52Updated 5 years ago
Alternatives and similar repositories for theArk:
Users that are interested in theArk are comparing it to the libraries listed below
- ☆32Updated 5 months ago
- tool for building windows shellcode in C by MinGW☆52Updated 3 years ago
- simple compiler based on mingw to build uncrackable windows application against analysis tools☆63Updated 7 years ago
- Run some secret code invisible from debugger single step.(x86 process on x64 windows only)☆25Updated 5 years ago
- ☆29Updated last year
- Windows Injection 101: from Zero to ROP (HITCON 2017)☆28Updated 7 years ago
- PoC: Exploit 32-bit Thread Snapshot of WOW64 to Take Over $RIP & Inject & Bypass Antivirus HIPS (HITB 2021)☆161Updated 3 years ago
- Call 32bit NtDLL API directly from WoW64 Layer☆60Updated 4 years ago
- 2021 iThome 鐵人賽☆47Updated last year
- XORList: Efficient C++ Linked List (No-throw by default)☆11Updated 11 months ago
- PoC: Rebuild A New Path Back to the Heaven's Gate (HITB 2021)☆106Updated 3 years ago
- ☆51Updated last year
- a tool used to analyze and monitor in named pipes☆162Updated 6 months ago
- POC about how to prevent windbg break☆15Updated 2 years ago
- ☆47Updated 2 years ago
- PoC for DEF CON 26: Playing Malware Injection with Exploit thoughts☆23Updated 6 years ago
- The Purified Windows 11: without Defender, Updater, Patches, System Health, etc.☆46Updated last year
- Convert PE files to a shellcode☆75Updated 5 years ago
- 試試你的好手氣☆34Updated last year
- Windows PE Signature Thief in C++☆50Updated 4 years ago
- Windows API Hashes used in the malwares☆40Updated 9 years ago
- C# implementation to produce ROR-13 numeric hash for given function API name☆31Updated 5 years ago
- An example of how x64 kernel shellcode can dynamically find and use APIs☆105Updated 4 years ago
- Basic packer using XOR encryption☆27Updated last year
- APC DLL Injector with NtQueueApcThread and wake up thread support☆43Updated 7 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆72Updated last year
- Assembly block for hooking windows API functions.☆90Updated 5 years ago
- Hacker Disassembler Engine 64 Copyright (c) 2008-2009, Vyacheslav Patkov. * All rights reserved.☆49Updated 3 years ago
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆87Updated 9 years ago
- Local privilege escalation PoC exploit for CVE-2019-16098☆193Updated 5 years ago