captain-woof / elf-in-memory-exec
Python3 scripts that executes an elf (Linux executable format) completely in memory.
☆25Updated last year
Alternatives and similar repositories for elf-in-memory-exec:
Users that are interested in elf-in-memory-exec are comparing it to the libraries listed below
- Windows eventlog formatting, live fetching and querying utility in C☆18Updated 4 years ago
- Repo for The Crown: Exploratory Analysis of Nim Malware DEF CON 615 talk☆44Updated 3 years ago
- TypeScript/JavaScript client libraries for Sliver☆20Updated last year
- ShellOrd is a C2 (Command & Control) framework cross-platform and agent written in Rust & Java☆14Updated 4 months ago
- Simple and sane cryptographic wrapper library.☆26Updated last year
- Automated Persistence and Lateral Movement using GCP Patch Management☆15Updated 2 years ago
- A simple C# program to unhook AMSI and execute unmanaged PowerShell.☆19Updated 3 years ago
- ☆18Updated last year
- A collection of source code, binaries, and compilation scripts designed to bypass detection☆25Updated 2 years ago
- API and CLI tool to fetch and query Chome DevTools heap snapshots (Python & Playwright)☆14Updated 8 months ago
- RustHunter is a modular incident response framework based on Rust and Ansible to build and compare environmental baselines.☆18Updated 2 years ago
- An (WIP) EDR Evasion tool for x64 Windows & Linux binaries that utilizes Nanomites, written in Rust.☆17Updated last month
- all credits go to @mgeeky☆59Updated 3 years ago
- Configurable, Community driven, HTTP C2 Profile☆14Updated 2 months ago
- A local LKM rootkit loader/dropper that lists available security mechanisms☆52Updated 3 years ago
- Released alongside with a talk at REcon 2023, TheRestarter is an interactive command-line tool is designed to interact with the Windows …☆15Updated last year
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆75Updated last year
- A small example of loading BOFs in Python with pure reflection☆18Updated 2 years ago
- Identifies metadata of .NET binary files.☆21Updated 9 months ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- Vuln-dev environment for LuaJIT☆18Updated 2 years ago
- Finds imports that could be exploited, still requires manual analysis.☆27Updated 2 years ago
- rpv-web is a browser based frontend for the rpv library☆25Updated 6 months ago
- Socks5 / Socks4 client and server library☆70Updated 3 weeks ago
- ☆12Updated 3 years ago
- example using NtCreateUserProcess in rust☆17Updated last week
- ☆17Updated 4 years ago
- ☆17Updated last year
- API hooking and code injection made easy!☆34Updated last year