adeilsonsilva / malware-injectionLinks
Official implementation for the paper "On deceiving malware classification with section injection"
☆36Updated 3 years ago
Alternatives and similar repositories for malware-injection
Users that are interested in malware-injection are comparing it to the libraries listed below
Sorting:
- Tricard - Malware Sandbox Fingerprinting☆22Updated 2 years ago
- Proof of concept - Covert Channel using Windows Filtering Platform (C#)☆21Updated 4 years ago
- This tool parses NTDLL.DLL, extracts all the syscall numbers and helps in making direct syscalls, in order to help evasion.☆15Updated 3 years ago
- A PowerShell script to prevent Sysmon from writing its events☆16Updated 5 years ago
- DLL hijacking vulnerability scanner and PE infector tool☆21Updated 8 years ago
- Remote code execution in Power Platform connectors via JSON deserialization☆23Updated 2 years ago
- A tool to sync mythic events with ghostwriter oplog.☆14Updated last year
- Proof-of-Concept to evade auditd by tampering via ptrace☆18Updated 2 years ago
- Walking the PEB in VBA☆24Updated 5 years ago
- extracts shellcode from a nasm compile macho binary☆16Updated 4 years ago
- AMSI detection PoC☆31Updated 5 years ago
- Golang Shlyuz Implant Implementation☆13Updated 6 months ago
- C# Implementation of Jared Atkinson's Get-InjectedThread.ps1☆53Updated 4 years ago
- ☆11Updated 4 years ago
- reboot of https://github.com/Genetic-Malware/Ebowla in order to simplify / modernize the codebase and provide ongoing support☆23Updated 4 years ago
- Protect your servers with a secret header☆29Updated 5 years ago
- Apply a filter to the events being reported by windows event logging☆15Updated 5 years ago
- ☆28Updated 6 years ago
- Collection of red machine learning projects☆41Updated 4 years ago
- Test Azure environment for MFA misconfigurations☆12Updated 2 years ago
- Modifies machine.config for persistence after installing signed .net assembly onto GAC☆14Updated 3 years ago
- Machine learning enabled dropper☆27Updated 2 years ago
- The repository accompanying the Buer Emulation workshop☆23Updated 4 years ago
- A Canary which fires when uninstalled☆34Updated 4 years ago
- ☆10Updated 5 years ago
- Swift code to run a dylib on disk☆16Updated 3 years ago
- Tools for playing w/ CobaltStrike config - extractin, detection, processing, etc...☆28Updated 2 years ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆52Updated 7 years ago
- ☆28Updated 7 years ago
- ☆14Updated 4 years ago