aaaddress1 / theArk
Windows x86 PE Packer In C++
☆52Updated 5 years ago
Alternatives and similar repositories for theArk:
Users that are interested in theArk are comparing it to the libraries listed below
- tool for building windows shellcode in C by MinGW☆52Updated 3 years ago
- simple compiler based on mingw to build uncrackable windows application against analysis tools☆63Updated 7 years ago
- Run some secret code invisible from debugger single step.(x86 process on x64 windows only)☆24Updated 4 years ago
- ☆30Updated 3 months ago
- ☆29Updated last year
- POC about how to prevent windbg break☆15Updated 2 years ago
- Call 32bit NtDLL API directly from WoW64 Layer☆60Updated 4 years ago
- PoC: Rebuild A New Path Back to the Heaven's Gate (HITB 2021)☆103Updated 3 years ago
- ☆49Updated last year
- a tool used to analyze and monitor in named pipes☆157Updated 4 months ago
- Windows Injection 101: from Zero to ROP (HITCON 2017)☆28Updated 7 years ago
- PoC for DEF CON 26: Playing Malware Injection with Exploit thoughts☆23Updated 6 years ago
- Hacker Disassembler Engine 64 Copyright (c) 2008-2009, Vyacheslav Patkov. * All rights reserved.☆47Updated 3 years ago
- XORList: Efficient C++ Linked List (No-throw by default)☆11Updated 8 months ago
- The Purified Windows 11: without Defender, Updater, Patches, System Health, etc.☆46Updated last year
- 2021 iThome 鐵人賽☆46Updated last year
- Windows PE Signature Thief in C++☆48Updated 4 years ago
- PoC: Exploit 32-bit Thread Snapshot of WOW64 to Take Over $RIP & Inject & Bypass Antivirus HIPS (HITB 2021)☆160Updated 3 years ago
- C# implementation to produce ROR-13 numeric hash for given function API name☆31Updated 5 years ago
- ☆46Updated 2 years ago
- Windows API Hashes used in the malwares☆41Updated 9 years ago
- Yet another windows syscall library☆18Updated 4 years ago
- Add an empty section to a PE file☆52Updated 7 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆70Updated last year
- Designed to learn OS specific anti-emulation patterns by fuzzing the Windows API.☆97Updated 4 years ago
- Convert PE files to a shellcode☆74Updated 4 years ago
- x86 and x64 assembly "read-eval-print loop" for Windows☆28Updated 7 years ago
- An example of how x64 kernel shellcode can dynamically find and use APIs☆104Updated 4 years ago
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆85Updated 9 years ago
- arbitrary kernel read/write in dbutil_2_3.sys, Proof of Concept Local Privilege Escalation to nt authority/system☆54Updated 3 years ago