c3l3si4n / windows_sleep_techniquesLinks
A collections of methods to sleep on Windows using common and less-so-common techniques
☆14Updated last year
Alternatives and similar repositories for windows_sleep_techniques
Users that are interested in windows_sleep_techniques are comparing it to the libraries listed below
Sorting:
- Using the Counter Strike 1.6 RCON protocol as a C2 Channel.☆88Updated 11 months ago
- Bypass the Event Trace Windows(ETW) and unhook ntdll.☆115Updated 2 years ago
- Create Anti-Copy DRM Malware☆71Updated last year
- This is a simple process injection made in C for Linux systems☆30Updated 2 years ago
- Basic interactive Windows kernel offensive toolkit written in C☆135Updated 4 months ago
- 「⚠️」Performing a BYOVD on the truesight.sys driver☆44Updated last year
- Splitting and executing shellcode across multiple pages☆103Updated 2 years ago
- A bunch of scripts and code i wrote.☆148Updated last year
- 「🧊」Ring 3 Rootkit for Windows 10☆60Updated last year
- ☆151Updated 2 years ago
- random code snippets, useful for getting started☆123Updated 2 months ago
- ☆147Updated last year
- 「⚔️」Ring 0 Rootkit for Linux Kernels x86/x86_64 5.x/6.x☆27Updated 9 months ago
- A Powershell AMSI Bypass technique via Vectored Exception Handler (VEH). This technique does not perform assembly instruction patching, f…☆166Updated last year
- Basic reverse shell in C using socket() with complete explanation☆68Updated 2 years ago
- Remotely Enumerate sessions using undocumented Windows Station APIs☆118Updated last year
- Another approach of Threadless injection discovered by @_EthicalChaos_ in c that loads a module into the target process and stomps it, an…☆185Updated 2 years ago
- Hide your P/Invoke signatures through other people's signed assemblies☆211Updated last year
- This project is an implant framework designed for long term persistent access to Windows machines.☆108Updated 2 years ago
- Malleable shellcode loader written in C and Assembly utilizing direct or indirect syscalls for evading EDR hooks☆136Updated last year
- PE obfuscator with Evasion in mind☆213Updated 2 years ago
- Local & remote Windows DLL Proxying☆169Updated last year
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆148Updated 2 years ago
- This repo goes with the blog entry at blog.malicious.group entitled "Writing your own RDI / sRDI loader using C and ASM".☆85Updated 2 years ago
- Shaco is a linux agent for havoc☆169Updated 2 years ago
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆83Updated last year
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆120Updated last year
- a modified CONTEXT based ropchain to circumvent CFG-FindHiddenShellcode and EtwTi-FluctuationMonitor☆107Updated last year
- Section-based payload obfuscation technique for x64☆64Updated last year
- ☆207Updated 2 years ago