demon-i386 / binarybinarybinaryLinks
some AV / EDR / analysis studies
☆10Updated 2 years ago
Alternatives and similar repositories for binarybinarybinary
Users that are interested in binarybinarybinary are comparing it to the libraries listed below
Sorting:
- Demoting PPL anti-malware services to less than a guest user☆66Updated 10 months ago
- Donut generator in rust.☆27Updated 3 years ago
- ☆61Updated 2 years ago
- Persistence techniques for windows.☆19Updated 2 years ago
- A work in progress BOF/COFF loader in Rust☆51Updated 2 years ago
- EvtPsst☆55Updated 2 years ago
- early cascade injection PoC based on Outflanks blog post, in rust☆61Updated last year
- Sample Rust Hooking Engine☆36Updated last year
- e(X)tensiable (Rust) Malware Toolkit: (Soon!) Full Featured Rust C2 Framework with Awesome Features!☆27Updated last year
- Rust template/library for implementing your own COFF loader☆72Updated 10 months ago
- Hunting and injecting RWX 'mockingjay' DLLs in pure nim☆59Updated last year
- A pointer encryption library intended for Red Team implant design in Rust.☆63Updated 2 months ago
- Linux Sleep Obfuscation☆106Updated last year
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆78Updated last year
- Dynamically resolve API function addresses at runtime in a secure manner.☆72Updated last month
- API Hammering with C++20☆49Updated 3 years ago
- A synergized Visual Studio and Rust development environment☆19Updated 10 months ago
- Rusty Hell's Gate / Halo's Gate / Tartarus' Gate / FreshyCalls / Syswhispers2 Library☆33Updated 3 years ago
- A Rust crate to parse user-mode minidump files generated on Windows☆18Updated last month
- A more reliable way of resolving syscall numbers in Windows☆52Updated last year
- Splitting and executing shellcode across multiple pages☆103Updated 2 years ago
- Alternative Read and Write primitives using Rtl* functions the unintended way.☆78Updated 3 months ago
- Heap encryption in Nim☆20Updated last year
- A remote process injection using process snapshotting based on https://gitlab.com/ORCA000/snaploader , in rust. It creates a sacrificial …☆50Updated 10 months ago
- Experimental PoC for unhooking API functions using in-memory patching, without VirtualProtect, for one specific EDR.☆14Updated 2 years ago
- Just another ntdll unhooking using Parun's Fart technique☆76Updated 2 years ago
- idk man this was the default github name☆35Updated 2 years ago
- Your NTDLL vaccine from modern direct syscall methods.☆36Updated 3 years ago
- A POC for developing BOFs for Sliver, Havoc, Cobalt Strike or most COFFLoaders in Rust.☆35Updated 3 months ago
- ☆38Updated 2 years ago