evilashz / PigSyscall
An implementation of an indirect system call
☆119Updated last year
Alternatives and similar repositories for PigSyscall:
Users that are interested in PigSyscall are comparing it to the libraries listed below
- Beacon compiled using clang☆63Updated 2 years ago
- shellcode生成框架☆83Updated 7 months ago
- It stinks☆101Updated 2 years ago
- Section Mapping Process Injection modified with SysWhisper2 (sw2-secinject): Cobalt Strike BOF☆41Updated 2 years ago
- Simple ETW unhook PoC. Overwrites NtTraceEvent opcode to disable ETW at Nt-function level.☆45Updated 11 months ago
- bring your own vulnerable driver☆89Updated last year
- Evasive loader to bypass static detection☆56Updated last year
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆62Updated last year
- A basic C2 framework written in C☆59Updated 7 months ago
- ☆46Updated 2 years ago
- ☆45Updated 10 months ago
- ELF Beacon Object File (BOF) Template☆47Updated 3 months ago
- A Cobalt Strike memory evasion loader for redteamers☆97Updated 2 years ago
- Just another version of the custom stack call from Proxy-Function-Calls-For-ETwTI☆31Updated last year
- Windows Kernel Knowledge && Collect Resources on the wire && Nothing innovation by myself &&☆55Updated last month
- ☆14Updated 2 years ago
- An Obfuscator-LLVM based mingw-w64 toolchain.☆35Updated 3 years ago
- Load static-compiled PE from remote server.☆59Updated 3 years ago
- Windows API Call Obfuscation☆99Updated 2 years ago
- ☆27Updated last year
- Loading Fileless Remote PE from URI to memory with argument passing and ETW patching and NTDLL unhooking and No New Thread technique☆62Updated 2 years ago
- vehsyscall:a syscall project that may bypass EDR☆54Updated 11 months ago
- Windows Defender VDM lua collections☆47Updated 2 years ago
- Efficient RAT signature locator for bypassing AV/EDR, supporting static scanning and memory scanning.☆33Updated 3 months ago
- A Simple PoC☆20Updated 8 months ago
- ☆112Updated 2 years ago
- Execute dotnet app from unmanaged process☆70Updated last month
- Repo that holds random POCs☆48Updated last year
- Code used in this post https://captmeelo.com/redteam/maldev/2022/04/21/kernelcallbacktable-injection.html☆114Updated 2 years ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆100Updated last year