jackullrich / ShellcodeStdio
An extensible framework for easily writing compiler optimized position independent x86 / x64 shellcode for windows platforms.
☆504Updated 5 years ago
Alternatives and similar repositories for ShellcodeStdio:
Users that are interested in ShellcodeStdio are comparing it to the libraries listed below
- A memory scanning evasion technique☆853Updated 7 years ago
- Universal Unhooking☆318Updated 6 years ago
- My implementation of enSilo's Process Doppelganging (PE injection technique)☆592Updated 2 years ago
- An improvement of the original reflective DLL injection technique by Stephen Fewer of Harmony Security☆320Updated 7 years ago
- A small, null-free Windows shellcode that executes calc.exe (x86/x64, all OS/SPs)☆403Updated 8 months ago
- This is a simple example and explanation of obfuscating API resolution via hashing☆233Updated 4 years ago
- Position Independent Windows Shellcode Written in C☆287Updated 6 years ago
- ☆393Updated 7 years ago
- ☆480Updated 7 years ago
- ChimeraPE (a PE injector type - alternative to: RunPE, ReflectiveLoader, etc) - a template for manual loading of EXE, loading imports pay…☆219Updated last year
- Extract Windows Defender database from vdm files and unpack it☆433Updated 5 years ago
- Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loadi…☆224Updated this week
- PowerLoaderEx - Advanced Code Injection Technique for x32 / x64☆362Updated 7 years ago
- Just another Windows Process Injection☆390Updated 4 years ago
- Research on Anti-malware and other related security solutions☆259Updated 4 years ago
- Quickly debug shellcode extracted during malware analysis☆580Updated last year
- Obfuscate specific windows apis with different apis☆988Updated 3 years ago
- Phantom DLL hollowing PoC☆355Updated 2 years ago
- A more stealthy variant of "DLL hollowing"☆337Updated 11 months ago
- This is a standalone exploit for a vulnerable feature in Capcom.sys☆293Updated 2 years ago
- Capcom Rootkit POC☆190Updated 7 years ago
- Windows - Weaponizing privileged file writes with the Update Session Orchestrator service☆384Updated 4 years ago
- Demos of various (also non standard) persistence methods used by malware☆219Updated last year
- Patching ROP-encoded shellcodes into PEs☆184Updated 7 years ago
- Examples of leaking Kernel Mode information from User Mode on Windows☆586Updated 7 years ago
- Shellcode Compiler☆1,083Updated 5 months ago
- Tools for instrumenting Windows Defender's mpengine.dll☆292Updated 6 years ago
- ☆803Updated 5 years ago
- A way to delete a locked file, or current running executable, on disk.☆511Updated 6 months ago
- AndrewSpecial, dumping lsass' memory stealthily and bypassing "Cilence" since 2019.☆385Updated 5 years ago