joaoviictorti / coffeeldrLinks
A COFF Loader written in Rust
☆128Updated 2 weeks ago
Alternatives and similar repositories for coffeeldr
Users that are interested in coffeeldr are comparing it to the libraries listed below
Sorting:
- A reflective DLL development template for the Rust programming language☆109Updated 5 months ago
- Mirage is a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆102Updated 8 months ago
- find dll base addresses without PEB WALK☆149Updated 3 months ago
- A Rust version of Mirage, a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆38Updated 7 months ago
- Dumping App Bound Protected Credentials & Cookies Without Privileges.☆71Updated 5 months ago
- A Rust port of LayeredSyscall — performs indirect syscalls while generating legitimate API call stack frames by abusing VEH.☆156Updated last year
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆80Updated 6 months ago
- Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar☆131Updated last year
- TypeLib persistence technique☆135Updated last year
- Host CLR and run .NET binaries using Rust☆131Updated 2 weeks ago
- Dynamically invoke arbitrary code in Rust (Dinvoke)☆92Updated 2 weeks ago
- Implementing an early exception handler for hooking and threadless process injection without relying on VEH or SEH☆128Updated 2 months ago
- This repo goes with the blog entry at blog.malicious.group entitled "Writing your own RDI / sRDI loader using C and ASM".☆87Updated 2 years ago
- Rusty Hell's Gate / Halo's Gate / Tartarus' Gate / FreshyCalls / Syswhispers2 Library☆32Updated 3 years ago
- A runas implementation with extra features in Rust☆48Updated 2 weeks ago
- A modern Rust implementation of the original Stardust project, providing a sophisticated 32/64-bit shellcode template that features posit…☆59Updated 7 months ago
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆64Updated 2 years ago
- ☆100Updated 2 years ago
- remote process injections using pool party techniques☆67Updated 4 months ago
- Linker for Beacon Object Files☆128Updated 2 weeks ago
- ☆82Updated 9 months ago
- An advanced utility for converting Windows Portable Executable (PE) files to position-independent code (PIC) shellcode. It enables execut…☆62Updated 8 months ago
- Arsenal of modules to beacon postex formats like BOF/Shellcode including: dotnet in memory execution, dumps (wifi, clipboard, screenshot,…☆45Updated last week
- shell code example☆63Updated last month
- Reflective shellcode loaderwith advanced call stack spoofing and .NET support.☆219Updated last month
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆60Updated 5 months ago
- A remote process injection using process snapshotting based on https://gitlab.com/ORCA000/snaploader , in rust. It creates a sacrificial …☆50Updated 9 months ago
- a demo module for the kaine agent to execute and inject assembly modules☆42Updated last year
- A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.☆84Updated last week
- Implementation of Indirect Syscall technique to pop a calc.exe☆107Updated last year