alphaSeclab / injection-stuff
PE Injection、DLL Injection、Process Injection、Thread Injection、Code Injection、Shellcode Injection、ELF Injection、Dylib Injection, including 400+Tools and 350+posts
☆528Updated 4 years ago
Alternatives and similar repositories for injection-stuff:
Users that are interested in injection-stuff are comparing it to the libraries listed below
- Run a Exe File (PE Module) in memory (like an Application Loader)☆882Updated 4 years ago
- Some ways to inject a DLL into a alive process☆359Updated 6 years ago
- Unicorn PE is an unicorn based instrumentation project designed to emulate code execution for windows PE files.☆829Updated 10 months ago
- Obfuscate specific windows apis with different apis☆997Updated 4 years ago
- Exploiting DLL Hijacking by DLL Proxying Super Easily☆496Updated last year
- Yet another variant of Process Hollowing☆384Updated 2 months ago
- Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted fi…☆652Updated last year
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,159Updated 11 months ago
- Thread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's memory allocation fr…☆1,102Updated 2 years ago
- kernel-mode Anti-Anti-Debug plugin. based on intel vt-x && ept technology☆435Updated 4 years ago
- Turn off PatchGuard in real time for win7 (7600) ~ later☆1,004Updated 2 years ago
- Fast Conversion Windows Dynamic Link Library To ShellCode☆391Updated 3 years ago
- Source Code Obfuscation And Binary Obfuscation, Multiple Languages And Multiple Platforms. Including 250+ Tools and 600+ Posts☆363Updated 3 years ago
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆861Updated 5 years ago
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC☆1,206Updated 10 months ago
- VirtualKD-Redux - A revival and modernization of VirtualKD☆868Updated 9 months ago
- A dynamic VMP dumper and import fixer, powered by VTIL.☆1,205Updated 4 years ago
- Inline syscalls made easy for windows on clang☆698Updated 9 months ago
- Using Driver Global Injection dll, it can hide DLL modules☆520Updated 5 years ago
- A way to delete a locked file, or current running executable, on disk.☆518Updated 8 months ago
- My implementation of enSilo's Process Doppelganging (PE injection technique)☆599Updated 2 years ago
- ☆485Updated 4 years ago
- Windows Anti-Rootkit Tool☆489Updated 2 weeks ago
- 🗜️ A packer for Windows x86 executable files written in C and Intel x86 Assembly. The new file after packing can obstruct reverse engine…☆337Updated 5 months ago
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,189Updated 3 weeks ago
- Fix VMProtect Import Protection☆341Updated 3 years ago
- VMProtect 3.x Anti-debug Method Improved☆567Updated 5 years ago
- Original C Implementation of the Hell's Gate VX Technique☆1,019Updated 3 years ago
- System call hook for Windows 10 20H1☆484Updated 3 years ago
- AV/EDR evasion via direct system calls.☆1,618Updated 2 years ago