cocomelonc / offzone-2024-malware-persistence-workshopLinks
OFFZONE 2024 Malware Persistence workshop
☆21Updated 11 months ago
Alternatives and similar repositories for offzone-2024-malware-persistence-workshop
Users that are interested in offzone-2024-malware-persistence-workshop are comparing it to the libraries listed below
Sorting:
- BSides Prishtina 2024 Malware Development and Persistence workshop☆113Updated 5 months ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆132Updated this week
- CVE-2024-30090 - LPE PoC☆108Updated last year
- Bypasses AMSI protection through remote memory patching and parsing technique.☆52Updated 6 months ago
- Slides for COM Hijacking AV/EDR Talk on 38c3☆74Updated 10 months ago
- Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By…☆129Updated 3 weeks ago
- ☆108Updated last year
- Implementing an early exception handler for hooking and threadless process injection without relying on VEH or SEH☆129Updated 2 months ago
- ☆60Updated 6 months ago
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆120Updated last year
- This project is an implant framework designed for long term persistent access to Windows machines.☆110Updated 2 years ago
- Create Anti-Copy DRM Malware☆68Updated last year
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 9 months ago
- Unhook Ntdll.dll, Go & C++.☆32Updated 6 months ago
- POC of GITHUB simple C2 in rust☆52Updated 3 months ago
- Executing Kernel Routines via Syscall Table Hijack (Kernel Code Execution)☆48Updated 5 months ago
- A collection of PoCs to do common things in unconventional ways☆119Updated 2 months ago
- ☆145Updated last year
- Folder Or File Delete to Get System Shell on Current Session Desktop☆47Updated 10 months ago
- Attacking the cleanup_module function of a kernel module☆52Updated 4 months ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆101Updated 7 months ago
- Payload encoding utility to effectively lower payload entropy.☆120Updated 7 months ago
- Windows AppLocker Driver (appid.sys) LPE☆67Updated last year
- Nim process hollowing loader☆60Updated 3 months ago
- "Service-less" driver loading☆162Updated 11 months ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- Evasion Escaper is a project aimed at evading the checks that malicious software performs to detect if it's running in a virtual environm…☆110Updated 9 months ago
- ☆80Updated last year
- A simple commandline application to automatically decrypt strings from Obfuscator protected binaries☆47Updated last year
- Demoting PPL anti-malware services to less than a guest user☆64Updated 9 months ago