Proof of Concept example for abusing Process Hacker 2 (v2.39.124)
☆25Oct 30, 2024Updated last year
Alternatives and similar repositories for hack-process-hacker2
Users that are interested in hack-process-hacker2 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆24Apr 28, 2024Updated 2 years ago
- Process injection via native Windows APIs (NTAPIs)☆15Jan 16, 2024Updated 2 years ago
- Three different shellcode techniques on the Windows Kernel☆17Apr 8, 2025Updated last year
- Modified versions of the Cobalt Strike Process Injection Kit☆108Jan 24, 2024Updated 2 years ago
- A tool that bypasses Windows Defender by manually loading DLLs, parsing EAT directly, and updating IAT with unhooked functions to run M…☆21Jul 14, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆50Jul 29, 2024Updated last year
- A simple to use single-include Windows API resolver☆22Jul 9, 2024Updated 2 years ago
- PhantomsGate: Advanced Shellcode Injection Technique☆28Jul 15, 2024Updated 2 years ago
- KeServiceDescriptorTable retrieval from KiSystemCall64Shadow☆17Dec 10, 2024Updated last year
- This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly☆20Apr 17, 2023Updated 3 years ago
- "D3MPSEC" is a memory dumping tool designed to extract memory dump from Lsass process using various techniques, including direct system c…☆29Sep 18, 2024Updated last year
- sync NIST's National Vulnerability Database into a local sqlite3 database☆14Apr 27, 2013Updated 13 years ago
- Carbon Black - LastLine Binary Detonation Connector☆11May 22, 2023Updated 3 years ago
- CVE-2023-50254: PoC Exploit for Deepin-reader RCE that affects unpatched Deepin Linux Desktops. Deepin Linux's default document reader "d…☆16Dec 22, 2023Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆11Oct 19, 2024Updated last year
- Just a git repo for the sleepmask detection rule i found in https://codex-7.gitbook.io/codexs-terminal-window/blue-team/detecting-cobalt-…☆16Jun 4, 2025Updated last year
- Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege☆227Nov 23, 2023Updated 2 years ago
- A Windows token-theft utility that enumerates SYSTEM processes, duplicates their access token, and spawns a new process running as NT AUT…☆65Mar 26, 2026Updated 3 months ago
- PowerShell module containing commands to easily interact with the Cybereason API.☆17Jan 4, 2026Updated 6 months ago
- OFFZONE 2024 Malware Persistence workshop☆23Dec 18, 2024Updated last year
- Shellcode Loader Implementing Indirect Dynamic Syscall , API Hashing, Fileless Shellcode retrieving using Winsock2☆13Jul 15, 2023Updated 3 years ago
- All my POC related to malware development☆15Feb 19, 2026Updated 5 months ago
- DLL proxy load example using the Windows thread pool API, I/O completion callback with named pipes, and C++/assembly☆66Mar 19, 2024Updated 2 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- ☆25Apr 28, 2024Updated 2 years ago
- AIDA64DRIVER Elevation of Privilege Vulnerability☆17Oct 25, 2024Updated last year
- A few examples of how to trap virtual memory access on Windows.☆40Dec 18, 2024Updated last year
- This exploit is utilising AddressOfEntryPoint of process which is RX and using WriteProcessMemory internal magic to change the permission…☆20Oct 31, 2024Updated last year
- ☆61Oct 24, 2024Updated last year
- early cascade injection PoC based on Outflanks blog post, in rust☆64Nov 8, 2024Updated last year
- Windows_AFD_LPE_CVE-2023-21768☆63Aug 27, 2023Updated 2 years ago
- Terminate AV/EDR leveraging BYOVD attack☆105Mar 21, 2025Updated last year
- Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle…☆16Jan 7, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Detect userland hooks placed by AV/EDR☆28Sep 4, 2023Updated 2 years ago
- Code Execution & Persistence in NETWORK SERVICE FAX Service☆37Feb 2, 2026Updated 5 months ago
- ☆43Feb 18, 2025Updated last year
- HEVD Exploit: ArbitraryWrite on Windows 10 22H2 - Bypassing KVA Shadow and SMEP via PML4 Entry Manipulation☆36Jul 10, 2024Updated 2 years ago
- ☆17Mar 22, 2024Updated 2 years ago
- EDR/AV Simulation for Malware Development☆13Oct 21, 2023Updated 2 years ago
- A Telegram Message forward or backup or clone ( or whatever you want to call it) bot.☆14Dec 15, 2025Updated 7 months ago