arget13 / memdlopenLinks
dlopen() filelessly a shared object or even a program (and run it).
☆56Updated 2 years ago
Alternatives and similar repositories for memdlopen
Users that are interested in memdlopen are comparing it to the libraries listed below
Sorting:
- This repo goes with the blog entry at blog.malicious.group entitled "Writing your own RDI / sRDI loader using C and ASM".☆85Updated 2 years ago
- XOR decrypting shellcode using the GPU with OpenCL.☆120Updated 8 months ago
- Create Anti-Copy DRM Malware☆71Updated last year
- Linux Sleep Obfuscation☆107Updated 2 years ago
- Select any exported function in a dll as the new dll's entry point.☆82Updated last year
- Template-based generation of shellcode loaders☆80Updated last year
- ☆100Updated 2 years ago
- ☆64Updated last year
- Identify and exploit leaked handles for local privilege escalation.☆111Updated 2 years ago
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆85Updated 9 months ago
- The program uses the Windows API functions to traverse through directories and locate DLL files with RWX section☆111Updated 2 years ago
- ☆89Updated 2 years ago
- Tool for playing with Windows Access Token manipulation.☆83Updated 3 years ago
- Cobalt Strike (CS) Beacon Object File (BOF) for kernel exploitation using AMD's Ryzen Master Driver (version 17).☆154Updated 3 years ago
- A set of rootkit-like abilities for unprivileged users, and vulnerabilities based on the DOT-to-NT path conversion known issue☆107Updated last year
- lsassdump via RtlCreateProcessReflection and NanoDump☆84Updated last year
- I have documented all of the AMSI patches that I learned till now☆75Updated 3 months ago
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆101Updated last year
- PE obfuscator with Evasion in mind☆213Updated 2 years ago
- ☆147Updated last year
- Shellcode loader that executes embedded Lua from Rust.☆127Updated last year
- random code snippets, useful for getting started☆123Updated 2 months ago
- Local & remote Windows DLL Proxying☆170Updated last year
- ☆151Updated 2 years ago
- Win32 keylogger that supports all (non-ime using) languages correctly☆53Updated 2 years ago
- This is my own implementation of the Perun's Fart technique by Sektor7☆72Updated 3 years ago
- Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar☆136Updated last year
- Remotely Enumerate sessions using undocumented Windows Station APIs☆118Updated last year
- Kernel Mode Driver for Elevating Process Privileges☆134Updated 2 years ago
- Mirage is a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆104Updated 11 months ago