fin3ss3g0d / NativeThreadpool
Work, timer, and wait callback example using solely Native Windows APIs.
☆89Updated last year
Alternatives and similar repositories for NativeThreadpool
Users that are interested in NativeThreadpool are comparing it to the libraries listed below
Sorting:
- ☆55Updated 6 months ago
- lsassdump via RtlCreateProcessReflection and NanoDump☆82Updated 6 months ago
- ☆81Updated 11 months ago
- Construct the payload at runtime using an array of offsets☆63Updated 10 months ago
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆78Updated 9 months ago
- A BOF to retrieve decryption keys for WhatsApp Desktop and a utility script to decrypt the databases.☆75Updated 2 months ago
- Tool to bypass LSA Protection (aka Protected Process Light)☆49Updated 4 months ago
- Section-based payload obfuscation technique for x64☆59Updated 9 months ago
- ☆106Updated 2 months ago
- ☆97Updated 8 months ago
- POC of GITHUB simple C2 in rust☆53Updated 3 months ago
- Create Anti-Copy DRM Malware☆56Updated 8 months ago
- ☆87Updated last year
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆148Updated last year
- ☆54Updated 2 months ago
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆46Updated last year
- Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.☆121Updated 7 months ago
- ☆99Updated last year
- I have documented all of the AMSI patches that I learned till now☆72Updated last month
- in-process powershell runner for BRC4☆45Updated last year
- A simple C++ Windows tool to get information about processes exposing named pipes.☆37Updated 2 months ago
- Opsec tool for finding user sessions by analyzing event log files through RPC (MS-EVEN)☆67Updated 11 months ago
- ☆59Updated last year
- The program uses the Windows API functions to traverse through directories and locate DLL files with RWX section☆101Updated last year
- A BOF to enumerate system process, their protection levels, and more.☆116Updated 5 months ago
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆28Updated this week
- ☆52Updated 4 months ago
- Tool to obtain hash using MS-SNTP for user accounts☆22Updated 3 months ago
- Folder Or File Delete to Get System Shell on Current Session Desktop☆39Updated 4 months ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆103Updated last month