dalvarezperez / umse
Universal Malware Sample Encryption
☆11Updated last year
Alternatives and similar repositories for umse:
Users that are interested in umse are comparing it to the libraries listed below
- findLoop - find possible encryption/decryption or compression/decompression code☆26Updated 6 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 7 years ago
- Malware Analysis, Anti-Analysis, and Anti-Anti-Analysis☆45Updated 7 years ago
- ☆22Updated 4 years ago
- Win32k Elevation of Privilege PocUpdated 5 years ago
- Exploits pack for the Windows Kernel mode driver HackSysExtremeVulnerableDriver written for educational purposes.☆66Updated 3 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- My collection of unpackers for malware packers/crypters☆28Updated 7 years ago
- CVE-2020-8103 Link Resolution Privilege Escalation Vulnerability in Bitdefender Antivirus Free☆15Updated 4 years ago
- ☆36Updated 5 years ago
- ☆12Updated 8 years ago
- Experimental Windows .text section Patch Detector☆21Updated 10 years ago
- A simple tool to view important DLL Characteristics and change DEP and ASLR☆44Updated 6 years ago
- Flare-On solutions☆36Updated 5 years ago
- Resources from my journey into Windows binary exploitation☆22Updated 6 years ago
- ☆45Updated 6 years ago
- Kernel mode windows NT API logger☆22Updated 5 years ago
- ☆27Updated 5 years ago
- Malware vulnerability research. Coming soon..☆12Updated 5 years ago
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- Hansel - a simple but flexible search for IDA☆26Updated 5 years ago
- Windows GPU rootkit PoC by Team Jellyfish☆35Updated 10 years ago
- A collection of shellcode hashes☆17Updated 6 years ago
- Ebfuscator: Abusing system errors for binary obfuscation☆52Updated 5 years ago
- Windows syscall fuzzer that I used in 2017 & 2018. Not much to say about it but maybe helpful to someone. At least syscall information it…☆20Updated 5 years ago
- A new binary injection technique, can easily go through any #CIG protected process and slip through all possible defenses without any inj…☆18Updated 7 years ago
- API hashing written in C to load APIs indirectly using CRC32 hashing☆14Updated 4 years ago
- ☆23Updated 4 years ago
- ACTIVELabs Security Advisories☆21Updated 3 years ago
- Will try to put here slides from now on when I give a talk☆24Updated 3 years ago