A cross-platform Python toolkit for parsing/writing PE files.
β69May 12, 2026Updated 3 weeks ago
Alternatives and similar repositories for pe_tools
Users that are interested in pe_tools are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- π§Ά The Win32 usermode threading library with UMS/fibers/threads supportβ30Jul 1, 2019Updated 6 years ago
- reducing the entropy of your payloadβ11Aug 15, 2022Updated 3 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLLβ148Feb 23, 2019Updated 7 years ago
- C# code to run PIC using CreateThreadβ17Apr 19, 2019Updated 7 years ago
- Kibana app for RedELKβ18Mar 19, 2023Updated 3 years ago
- AI Agents on DigitalOcean Gradient AI Platform β’ AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- SharpDir is a simple code set to search both local and remote file systems for files and is compatible with Cobalt Strike.β29Jul 4, 2019Updated 6 years ago
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxiesβ34Sep 15, 2022Updated 3 years ago
- β23Nov 13, 2021Updated 4 years ago
- β138Dec 4, 2023Updated 2 years ago
- Bypass Malware Time Delaysβ105Sep 23, 2022Updated 3 years ago
- BasicLDR: A Reflective DLL Loaderβ14Jun 11, 2024Updated last year
- Nice try reading NTDLL from disk, nerd.β19Apr 18, 2022Updated 4 years ago
- A small experiment on assigning a processes threads a specific CPU and then blocking it with a high priority threadβ33Sep 24, 2025Updated 8 months ago
- Scripts for public use that we've randomly written, or have updated from other people's work.β40Jun 25, 2024Updated last year
- Virtual machines for every use case on DigitalOcean β’ AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- β18Dec 3, 2025Updated 6 months ago
- MSBuild AL bypassβ16Mar 9, 2023Updated 3 years ago
- C# Situational Awareness Scriptβ34Apr 26, 2019Updated 7 years ago
- Encode binary as English text over HTTP(s)β30Aug 25, 2023Updated 2 years ago
- β10Apr 19, 2026Updated last month
- 64bit WIndows 10 shellcode dat pops dat calc - Dynamic & Null Freeβ65Mar 8, 2023Updated 3 years ago
- A remote process injection using process snapshotting based on https://gitlab.com/ORCA000/snaploader , in rust. It creates a sacrificial β¦β50Jan 25, 2025Updated last year
- Citrix Phishletβ24Feb 2, 2021Updated 5 years ago
- β60Dec 15, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer β’ AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A small Aggressor script to help Red Teams identify foreign processes on a host machineβ86Jan 6, 2023Updated 3 years ago
- Just another Process Injection using Process Hollowing technique.β18Sep 18, 2023Updated 2 years ago
- Custom implementation of DbgHelp's MiniDumpWriteDump function. Uses static syscalls to replace low-level functions like NtReadVirtualMemoβ¦β127Jan 18, 2022Updated 4 years ago
- Windows file system driver which allows to block access to files at run-time (C/C++, C#, WDK, SDK)β12Jan 1, 2023Updated 3 years ago
- Linux kernel-mode and user-space with wine/MinGW/Windows compability hacking library.β12Sep 15, 2022Updated 3 years ago
- Attack and introduction (info stealer), start your adventure in MMDβ20Sep 14, 2025Updated 8 months ago
- Simple and sane cryptographic wrapper library.β27Apr 21, 2023Updated 3 years ago
- Inline syscalls made for MSVC supporting x64 and WOW64β192Jul 10, 2023Updated 2 years ago
- Fast ssdeep comparison libraryβ13Nov 3, 2014Updated 11 years ago
- Virtual machines for every use case on DigitalOcean β’ AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- This is the AV ("protection solution") used for my windows 10 rootkit main project. this includes the installer stager program, a serviceβ¦β13May 2, 2024Updated 2 years ago
- Serverless Redirector in various cloud vendor for red teamβ73Dec 8, 2022Updated 3 years ago
- Parses Cobalt Strike malleable C2 profiles.β61Jun 1, 2026Updated last week
- COFF and BOF Loader written in Nimβ176Apr 4, 2026Updated 2 months ago
- Modify managed functions from unmanaged codeβ53Feb 1, 2024Updated 2 years ago
- A simple program to hook the current process to identify the manual syscall executions on windowsβ268Nov 18, 2022Updated 3 years ago
- POC tool to convert CobaltStrike BOF files to raw shellcodeβ220Nov 5, 2021Updated 4 years ago