hasherezade / SweetDreams
Implementation of Advanced Module Stomping and Heap/Stack Encryption
☆9Updated last year
Alternatives and similar repositories for SweetDreams:
Users that are interested in SweetDreams are comparing it to the libraries listed below
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆33Updated last year
- Process Injection without R/W target memory and without creating a remote thread☆18Updated 3 years ago
- ☆25Updated 4 months ago
- Standalone Metasploit-like XOR encoder for shellcode☆46Updated 9 months ago
- NT AUTHORITY\SYSTEM☆38Updated 4 years ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆26Updated last year
- 2022 Updated Kernelmode-Code☆31Updated 11 months ago
- A multi-staged malware that contains a kernel mode rootkit and a remote system shell.☆72Updated 3 years ago
- Windows API Hashes used in the malwares☆41Updated 9 years ago
- Collection of source code for Polymorphic, Metamorphic, and Permutation Engines used in Malware☆26Updated 5 years ago
- Recreating and reviewing the Windows persistence methods☆37Updated 3 years ago
- ☆106Updated 2 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆70Updated last year
- A PE parser written in C++ which does not uses OOP. Helpful if you want to learn about PE parsing.☆16Updated last year
- Enabled / Disable LSA Protection via BYOVD☆65Updated 3 years ago
- A tool for detecting manual/direct syscalls in x86 and x64 processes using Nirvana Hooks.☆108Updated 3 years ago
- ☆28Updated 2 years ago
- Progress of learning kernel development☆14Updated 2 years ago
- Next gen process injection technique☆44Updated 4 years ago
- ☆58Updated 2 years ago
- A journal for $6,000 Riot Vanguard bounty.☆62Updated last year
- call gates as stable comunication channel for NT x86 and Linux x86_64☆31Updated last year
- ☆29Updated 3 years ago
- CVE-2024-40431+CVE-2022-25479 chain for EOP(DATA ONLY ATTACK)☆44Updated 4 months ago
- Rite Of Passage ROP Injector☆34Updated 5 years ago
- TrashDBG the world's worse debugger☆23Updated 3 years ago
- How to set up 2 VirtualBox VM to debug kernel driver using windbg☆54Updated 2 years ago
- Hook all callbacks which are registered with LdrRegisterDllNotification☆84Updated 2 years ago
- A Bumblebee-inspired Crypter☆80Updated 2 years ago
- Extract data of TTD trace file to a minidump☆28Updated last year