hackerschoice / memexec
Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection
☆107Updated last week
Alternatives and similar repositories for memexec:
Users that are interested in memexec are comparing it to the libraries listed below
- Get root via TTY / TIOCSTI stuffing☆70Updated 9 months ago
- eBPF hacks☆186Updated 4 months ago
- Userland exec PoC to be used as attack vector technique☆84Updated 2 months ago
- Pack/Encrypt/Obfuscate ELF + SHELL scripts☆195Updated this week
- ☆88Updated 3 months ago
- WallEscape vulnerability in util-linux☆51Updated last year
- Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation☆127Updated last year
- Oracle VirtualBox Elevation of Privilege (Local Privilege Escalation) Vulnerability☆219Updated 11 months ago
- CVE-2024-11477 7Zip Code Execution Writeup and Analysis☆58Updated 4 months ago
- Rust Linux Kernel Module designed for LKM rootkit detection☆39Updated last month
- CVE-2024-30090 - LPE PoC☆106Updated 6 months ago
- PoC for CVE-2025-22457☆37Updated this week
- CVE-2023-4911 proof of concept☆167Updated last year
- Java archive implant toolkit.☆60Updated last week
- A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs☆286Updated 3 months ago
- POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY☆182Updated this week
- Exploit targeting NT kernel in 24H2 Windows Insider Preview☆129Updated 11 months ago
- rp-bf: A library to bruteforce ROP gadgets by emulating a Windows user-mode crash-dump☆114Updated 11 months ago
- Cheat sheet to detect and remove linux kernel rootkit☆55Updated 4 months ago
- Pwn2Own Vancouver 2023 Ubuntu LPE exploit☆158Updated last year
- Leveraging CVEs as North Stars in vulnerability discovery and comprehension.☆64Updated last year
- ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.☆47Updated this week
- CVE-2024-38200 & CVE-2024-43609 - Microsoft Office NTLMv2 Disclosure Vulnerability☆137Updated 3 months ago
- TeamViewer User to Kernel Elevation of Privilege PoC. CVE-2024-7479 and CVE-2024-7481. ZDI-24-1289 and ZDI-24-1290. TV-2024-1006.☆137Updated 3 months ago
- kubernetes rootkit☆31Updated last year
- ☆178Updated last year
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆114Updated last year
- Collection of codes focused on Linux rootkits☆105Updated last month
- Payload encoding utility to effectively lower payload entropy.☆115Updated 4 months ago
- ☆214Updated last year