arget13 / memdlopenLinks
dlopen() filelessly a shared object or even a program (and run it).
☆56Updated 2 years ago
Alternatives and similar repositories for memdlopen
Users that are interested in memdlopen are comparing it to the libraries listed below
Sorting:
- This repo goes with the blog entry at blog.malicious.group entitled "Writing your own RDI / sRDI loader using C and ASM".☆87Updated 2 years ago
- Create Anti-Copy DRM Malware☆68Updated last year
- lsassdump via RtlCreateProcessReflection and NanoDump☆83Updated last year
- I have documented all of the AMSI patches that I learned till now☆76Updated last week
- Identify and exploit leaked handles for local privilege escalation.☆111Updated 2 years ago
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆98Updated last year
- XOR decrypting shellcode using the GPU with OpenCL.☆117Updated 5 months ago
- ☆100Updated 2 years ago
- Select any exported function in a dll as the new dll's entry point.☆81Updated last year
- ☆151Updated 2 years ago
- Implementation of Indirect Syscall technique to pop a calc.exe☆111Updated last year
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆84Updated 6 months ago
- ☆44Updated last month
- A reimplementation of Cobalt Strike's Beacon Object File (BOF) Loader☆61Updated last year
- ☆62Updated last year
- Shellcode loader that executes embedded Lua from Rust.☆125Updated 11 months ago
- Linux Sleep Obfuscation☆105Updated last year
- shell code example☆63Updated 2 weeks ago
- remote process injections using pool party techniques☆67Updated 4 months ago
- Splitting and executing shellcode across multiple pages☆103Updated 2 years ago
- random code snippets, useful for getting started☆121Updated last year
- ☆84Updated 9 months ago
- Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar☆134Updated last year
- Template-based generation of shellcode loaders☆79Updated last year
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆147Updated last year
- Linker for Beacon Object Files☆129Updated 2 weeks ago
- Basic interactive Windows kernel offensive toolkit written in C☆133Updated last month
- Remotely Enumerate sessions using undocumented Windows Station APIs☆119Updated last year
- Windows AppLocker Driver (appid.sys) LPE☆67Updated last year
- Threadless shellcode injection tool☆67Updated last year