compilepeace / EVIL_RABBITLinks
-x-x-x- DO NOT RUN ON PRODUCTION MACHINE -x-x-x- LD_PRELOAD based user-land rootkit for Linux platform.
☆28Updated 4 years ago
Alternatives and similar repositories for EVIL_RABBIT
Users that are interested in EVIL_RABBIT are comparing it to the libraries listed below
Sorting:
- A LKM rootkit targeting 4.x and 5.x kernel versions which opens a backdoor that can spawn a reverse shell to a remote host, launch malwar…☆129Updated 4 years ago
- ☆28Updated 6 years ago
- Proof of concept for injecting simple shellcode via ptrace into a running process.☆73Updated 2 years ago
- Proxy system calls over an RPC channel☆99Updated 3 years ago
- In line function hooking LKM rootkit☆52Updated 5 years ago
- ☆67Updated 2 years ago
- bdvl☆114Updated 3 years ago
- ☆47Updated 3 years ago
- Code snippets for bare-metal malware development☆98Updated 3 years ago
- This course is designed to expose students to advanced exploitation techniques. Topics include the use of automated exploitation tools a…☆28Updated 5 years ago
- A summary about different projects/presentations/tools to test how to evade malware sandbox systems☆54Updated 6 years ago
- An attempt to restore and adapt to modern Win10 version the 'Rootkit Arsenal' original code samples☆71Updated 3 years ago
- ☆136Updated 6 months ago
- A local LKM rootkit loader/dropper that lists available security mechanisms☆52Updated 4 years ago
- Gozi ISFB is a well-known and widely distributed banking trojan, and has been in the threat landscape for the past several years.☆65Updated 7 years ago
- Raw socket library/framework for red team events☆34Updated 2 years ago
- Binary to shellcode from an object/executable format 32 & 64-bit PE , ELF☆74Updated 4 years ago
- ☆64Updated last year
- Red Team Operator: Malware Development Essentials Course☆99Updated 5 years ago
- autopwn + deployment☆15Updated 3 years ago
- yet another hidden LKM hunter☆26Updated last year
- Various shell code I have written☆17Updated 4 years ago
- Linux Rootkits (4.x Kernel)☆86Updated 4 years ago
- PE File Blessing - To continue or not to continue☆87Updated 5 years ago
- The following repository contains a modified version of SUNBURST with cracekd hashes, comments and annotations.☆56Updated 4 years ago
- (Sim)ulate (Ba)zar Loader☆29Updated 4 years ago
- Matryoshka - stacked LKM loader☆53Updated last year
- A shellcode generator with encryption, encoding and polymorphism facilities built-in☆34Updated 3 years ago
- Sentello is python script that simulates the anti-evasion and anti-analysis techniques used by malware.☆74Updated 4 years ago
- A repository where I share my injection implemintations☆29Updated 5 years ago