An implementation of an indirect system call
☆133Aug 25, 2023Updated 3 years ago
Alternatives and similar repositories for PigSyscall
Users that are interested in PigSyscall are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.☆735Jul 19, 2023Updated 3 years ago
- more conveniently Visual-Studio-BOF-template☆76Sep 12, 2023Updated 3 years ago
- Self Cleanup in post-ex job☆58Sep 10, 2024Updated 2 years ago
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆67May 2, 2023Updated 3 years ago
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆78Jul 23, 2023Updated 3 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Stack Spoofing with Synthetic frames based on the work of namazso, SilentMoonWalk, and VulcanRaven☆274Oct 16, 2024Updated last year
- beta☆119Sep 24, 2024Updated 2 years ago
- Porting of BOF InlineExecute-Assembly to load .NET assembly in process but with patchless AMSI and ETW bypass using hardware breakpoint.☆304Jun 12, 2026Updated 3 months ago
- Implementation of Advanced Module Stomping and Heap/Stack Encryption☆235Jul 25, 2023Updated 3 years ago
- Just another version of the custom stack call from Proxy-Function-Calls-For-ETwTI☆34Mar 17, 2023Updated 3 years ago
- .NET assembly loader with patchless AMSI and ETW bypass☆391Apr 19, 2023Updated 3 years ago
- 添加计划任务方法集合☆313Aug 6, 2023Updated 3 years ago
- Take a screenshot without injection for Cobalt Strike☆201Jun 7, 2023Updated 3 years ago
- A PoC implementation for dynamically masking call stacks with timers.☆315Feb 13, 2023Updated 3 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE☆204Aug 25, 2023Updated 3 years ago
- Improved version of EKKO by @5pider that Encrypts only Image Sections☆122Feb 13, 2023Updated 3 years ago
- 关于RPC一些绕EDR的tips☆200Mar 3, 2023Updated 3 years ago
- Process injection alternative☆404Sep 6, 2024Updated 2 years ago
- ☆45Jun 25, 2024Updated 2 years ago
- A beacon object file implementation of PoolParty Process Injection Technique.☆458Dec 21, 2023Updated 2 years ago
- C++ self-Injecting dropper based on various EDR evasion techniques.☆444Feb 11, 2024Updated 2 years ago
- Cobalt Strike + Brute Ratel C4 Beacon Object File (BOF) Conversion of the Mockingjay Process Injection Technique☆157Nov 7, 2023Updated 2 years ago
- A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk☆475Jul 6, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Dumping LSASS with a duplicated handle from custom LSA plugin☆206Feb 23, 2022Updated 4 years ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆52Jul 1, 2023Updated 3 years ago
- A little tool to play with Windows security☆12Jan 21, 2026Updated 8 months ago
- Utilizing hardware breakpoints to evade monitoring by Endpoint Detection and Response platforms☆137Dec 20, 2022Updated 3 years ago
- Implementation of Indirect Syscall technique to pop a calc.exe☆110Jan 25, 2024Updated 2 years ago
- Syscall免杀☆509Jun 21, 2024Updated 2 years ago
- A BOF that runs unmanaged PEs inline☆700Oct 23, 2024Updated last year
- ☆83Nov 1, 2023Updated 2 years ago
- UDRL for CS☆434Dec 3, 2023Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Sleep Obfuscation☆839Dec 3, 2023Updated 2 years ago
- PE loader with various shellcode injection techniques☆460Oct 17, 2022Updated 3 years ago
- Its a coff loader ported to go( Modified by TimWhite )☆26Jul 17, 2023Updated 3 years ago
- Generic PE loader for fast prototyping evasion techniques☆246Jul 2, 2024Updated 2 years ago
- Cobalt Strike BOF that Add a user to localgroup by samr☆142Nov 30, 2022Updated 3 years ago
- Implant drop-in for EDR testing☆144Nov 15, 2023Updated 2 years ago
- Threadless Process Injection through entry point hijacking☆354Sep 10, 2024Updated 2 years ago