hasherezade / hidden_bee_toolsLinks
Parser for a custom executable format from Hidden Bee malware (first stage)
☆43Updated 9 months ago
Alternatives and similar repositories for hidden_bee_tools
Users that are interested in hidden_bee_tools are comparing it to the libraries listed below
Sorting:
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 7 years ago
- ☆22Updated 4 years ago
- NT AUTHORITY\SYSTEM☆38Updated 4 years ago
- ☆22Updated 4 years ago
- Windows GPU rootkit PoC by Team Jellyfish☆35Updated 10 years ago
- "An Introduction to Windows Exploit Development" is an open sourced, free Windows exploit development course I created for the Southeast …☆39Updated 5 years ago
- A ready-made template for a project based on libpeconv.☆48Updated 4 months ago
- A set of small utilities, helpers for PIN tracers☆33Updated last year
- ☆21Updated 5 years ago
- A small library helping to parse commandline parameters (for C/C++)☆57Updated 3 weeks ago
- Exploits pack for the Windows Kernel mode driver HackSysExtremeVulnerableDriver written for educational purposes.☆66Updated 3 years ago
- Kernel mode windows NT API logger☆22Updated 5 years ago
- A multi-staged malware that contains a kernel mode rootkit and a remote system shell.☆71Updated 4 years ago
- Analyze and attack windows applications using dll hijacking vulnerabilities☆57Updated 5 years ago
- PoC for detecting and dumping process hollowing code injection☆51Updated 6 years ago
- ☆31Updated 4 years ago
- Clone running process with ZwCreateProcess☆57Updated 4 years ago
- Bypass UAC by abusing the Security Center CPL and hijacking a shell protocol handler☆29Updated 3 years ago
- Remote PE reflective injection with a simple reflective loader☆31Updated 5 years ago
- ☆34Updated 7 years ago
- Example for PagedOut!☆24Updated 5 years ago
- Simple library to handle PE files loading, relocating, get/set data, ..., in addition to process handling☆33Updated 5 years ago
- ☆45Updated 7 years ago
- Simple PE packer with RtlCompressBuffer☆21Updated 9 years ago
- Python 3 - Manipulation and conversation with different data type (Bytes operations)☆26Updated 3 years ago
- exploit termdd.sys(support kb4499175)☆59Updated 5 years ago
- Windows x64 Process Scanner to detect application compatability shims☆37Updated 6 years ago
- Simple PE Packer Which Encrypts .text Section☆51Updated 8 years ago
- Antivirus Emulator Fingerprints☆29Updated 6 years ago
- PoC for detecting and dumping code injection (built and extended on UnRunPE)☆56Updated 6 years ago