arget13 / memdlopenLinks
dlopen() filelessly a shared object or even a program (and run it).
☆56Updated 2 years ago
Alternatives and similar repositories for memdlopen
Users that are interested in memdlopen are comparing it to the libraries listed below
Sorting:
- This repo goes with the blog entry at blog.malicious.group entitled "Writing your own RDI / sRDI loader using C and ASM".☆88Updated 2 years ago
- ☆100Updated 2 years ago
- ☆88Updated 2 years ago
- Linux Sleep Obfuscation☆106Updated last year
- Identify and exploit leaked handles for local privilege escalation.☆111Updated 2 years ago
- Select any exported function in a dll as the new dll's entry point.☆81Updated last year
- Shellcode loader that executes embedded Lua from Rust.☆126Updated 11 months ago
- A PoC demonstrating code execution via DLL Side-Loading in WinSxS binaries.☆111Updated last year
- Create Anti-Copy DRM Malware☆70Updated last year
- Kernel Mode Driver for Elevating Process Privileges☆134Updated 2 years ago
- I have documented all of the AMSI patches that I learned till now☆76Updated last month
- Splitting and executing shellcode across multiple pages☆103Updated 2 years ago
- lsassdump via RtlCreateProcessReflection and NanoDump☆82Updated last year
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆83Updated 7 months ago
- A simple ExternalC2 POC for Havoc C2. Communicates over Notion using a custom python agent, handler and extc2 channel. Not operationally …☆91Updated 3 years ago
- ☆62Updated last year
- This is my own implementation of the Perun's Fart technique by Sektor7☆72Updated 3 years ago
- ☆137Updated 2 years ago
- Template-based generation of shellcode loaders☆79Updated last year
- PE obfuscator with Evasion in mind☆214Updated 2 years ago
- Cobalt Strike (CS) Beacon Object File (BOF) for kernel exploitation using AMD's Ryzen Master Driver (version 17).☆148Updated 2 years ago
- Interceptor is a kernel driver focused on tampering with EDR/AV solutions in kernel space☆134Updated 2 years ago
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆99Updated last year
- Null-free shellcode for TCP reverse shell on Windows x64☆59Updated last year
- ☆151Updated 2 years ago
- Remotely Enumerate sessions using undocumented Windows Station APIs☆118Updated last year
- ☆50Updated 3 years ago
- Threadless shellcode injection tool☆67Updated last year
- ☆122Updated 2 years ago
- Tool for playing with Windows Access Token manipulation.☆82Updated 3 years ago