g3tsyst3m / CodefromBlogLinks
The code I write in my blog
☆62Updated last week
Alternatives and similar repositories for CodefromBlog
Users that are interested in CodefromBlog are comparing it to the libraries listed below
Sorting:
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆84Updated last year
- Create Anti-Copy DRM Malware☆71Updated last year
- Shellcode loader☆100Updated last year
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆50Updated last year
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆101Updated last year
- Evade behavioral analysis by executing malicious code within trusted Microsoft call stacks, patchless hooking library IAT/EAT.☆129Updated last month
- PoC for generating bthprops.cpl module designed to be loaded by Fsquirt.exe LOLBin☆121Updated last month
- Generate an Alphabetical Polymorphic Shellcode☆135Updated 5 months ago
- ☆159Updated last year
- lsassdump via RtlCreateProcessReflection and NanoDump☆84Updated last year
- Using Just In Time (JIT) instruction decryption, this shellcode loader ensures that only the currently executing instruction is visible i…☆61Updated 10 months ago
- A stealthy, assembly-based tool for secure function address resolution, offering a robust alternative to GetProcAddress.☆72Updated last year
- This repo goes with the blog entry at blog.malicious.group entitled "Writing your own RDI / sRDI loader using C and ASM".☆85Updated 2 years ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- EDR-Redir : a tool used to redirect the EDR's folder to another location.☆222Updated 3 months ago
- DebugAmsi is another way to bypass AMSI through the Windows process debugger mechanism.☆102Updated 2 years ago
- Injecting DLL into LSASS at boot☆156Updated 9 months ago
- Dumping App Bound Protected Credentials & Cookies Without Privileges.☆166Updated 8 months ago
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆61Updated 8 months ago
- Windows AppLocker Driver (appid.sys) LPE☆72Updated last year
- Template-based generation of shellcode loaders☆80Updated last year
- EDRStartupHinder: A red team tool to prevent Antivirus and EDR from running.☆180Updated 3 weeks ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆103Updated 10 months ago
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆85Updated 9 months ago
- ☆108Updated last year
- ☆147Updated last year
- This repository implements Threadless Injection in C☆172Updated 2 years ago
- A Mythic agent for Windows written in C☆153Updated last week
- Splitting and executing shellcode across multiple pages☆103Updated 2 years ago
- Modern PIC implant for Windows (64 & 32 bit)☆105Updated 6 months ago