Fuzzing Harness and Unpatched Crash Results from Fuzzing Defender MpEngine
☆47Jul 29, 2025Updated last year
Alternatives and similar repositories for defender-mpengine-fuzzing
Users that are interested in defender-mpengine-fuzzing are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A small experiment on assigning a processes threads a specific CPU and then blocking it with a high priority thread☆32Sep 24, 2025Updated last year
- A Python script for creating `.lnk` (shortcut) files with embedded encoded data and packaging them into ZIP archives.☆92Jan 8, 2025Updated last year
- Toolset to manipulate RPC clients by finding delayed services and masquerading as them☆113Updated this week
- Simulate per-process disconnection in red team environments☆116Jun 6, 2025Updated last year
- A VSCode plugin to assist with BOF development.☆36Aug 14, 2024Updated 2 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Modified Version of Melkor @FuzzySecurity capable of creating disposable AppDomains in injected processes.☆27Sep 8, 2021Updated 5 years ago
- An IDA Pro / Hex-Rays plugin that turns noisy pseudocode into reviewable, kernel-aware cleanup artifacts☆162Jul 7, 2026Updated 3 months ago
- Safely manage the unloading of DLLs that have been hooked into a process. Context: https://github.com/KNSoft/KNSoft.SlimDetours/discussio…☆83Jun 21, 2025Updated last year
- Dump protected process memory by using BYOVD to tamper with handle objects in the kernel.☆47Aug 5, 2025Updated last year
- A Windows C++ OLE/COM Object explorer written in WTL.☆16Feb 28, 2025Updated last year
- T-1 is a shellcode loader that leverages ML techniques to detect VM environments☆37Oct 30, 2024Updated last year
- Ludus role for deploying a Cobalt Strike Teamserver onto Linux servers☆19Mar 19, 2025Updated last year
- bootkit驱动映射,三环进程注入加载指定模块☆16Oct 8, 2024Updated 2 years ago
- PoC for popping a system shell against the LnvMSRIO.sys driver☆125Oct 6, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Inline syscalls made for MSVC supporting x64 and WOW64☆194Aug 12, 2026Updated last month
- Implementing an early exception handler for hooking and threadless process injection without relying on VEH or SEH☆139Aug 31, 2025Updated last year
- A PowerShell console in C/C++ with all the security features disabled☆397Oct 14, 2025Updated 11 months ago
- .NET tool used to enrich RPC telemetry☆101Jan 24, 2026Updated 8 months ago
- open source port/reimplementation of the Cobalt Strike BOF Loader as is☆73Updated this week
- Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths☆366Aug 11, 2024Updated 2 years ago
- defender_database☆24Oct 31, 2023Updated 2 years ago
- A rust proof of concept to demonstrate registry overwriting via RegRestoreKey using the Offline Registry Library☆23Nov 13, 2025Updated 10 months ago
- Process injection alternative☆404Sep 6, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Beacon Object File to Enable Chrome DevTools Protocol (CDP)☆130Updated this week
- Fully documented, updated, and comprehensive utilities for Windows 32-bit Wow64 processes☆19Aug 15, 2025Updated last year
- Playing around with Thread Context Hijacking. Building more evasive primitives to use as alternative for existing process injection techn…☆209Jun 17, 2025Updated last year
- Demo code JavaScript POC that tricks user into sending Windows hash to responder☆37Dec 12, 2025Updated 9 months ago
- 在线安软识别☆11Aug 6, 2025Updated last year
- Educational proof-of-concept demonstrating DEP/NX bypass using hardware breakpoints, vectored exception handling, and instruction emulati…☆100Oct 17, 2025Updated 11 months ago
- Uses Threat-Intelligence ETW events to identify shellcode regions being hidden by fluctuating memory protections☆187May 17, 2023Updated 3 years ago
- Updated version of a long known self deletion technique to work with 24H2.☆62Jun 9, 2025Updated last year
- JXA implementation of some SwiftBelt functions. Author: Cedric Owens☆47Jun 22, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- An example of how a driver can register a handle creation callback.☆16Jun 12, 2023Updated 3 years ago
- Injecting DLL into LSASS at boot☆158Apr 29, 2025Updated last year
- A runtime for developing large-scale and complex PIC module.☆21Sep 15, 2026Updated 3 weeks ago
- PrimitiveInjection by using Read, Write and Allocation Primitives.☆54Jun 21, 2025Updated last year
- MacOS Shared Library to Shellcode Loader☆92Feb 23, 2026Updated 7 months ago
- Reports and POCs for CVE 2024-43570 and CVE-2024-43535☆31Jun 7, 2025Updated last year
- Shellcode capable of bypassing EAF / IAF mitigations☆28Apr 11, 2023Updated 3 years ago