kargisimos / dolus
x86_64 LKM linux rootkit
☆15Updated last year
Related projects ⓘ
Alternatives and complementary repositories for dolus
- ☆12Updated 2 years ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆22Updated 2 years ago
- Extension functionality for the NightHawk operator client☆26Updated last year
- Tool for obtaining information about PPL processes☆16Updated 9 months ago
- Beacon Object Files used for Cobalt Strike☆17Updated last year
- powershell script i wrote that can suspend an arbitrary process (with limits)☆20Updated last year
- string encryption in Nim☆17Updated 4 months ago
- OSED Practice binary☆24Updated 11 months ago
- ☆20Updated last year
- A Large Action Model designed to operate on MacOS or Windows which interacts with common C2 interfaces such as Cobalt Strike, Havoc, or B…☆24Updated 8 months ago
- Python3 tool to perform password spraying using RDP☆16Updated last year
- Create PDFs with HTML smuggling attachments that save on opening the document.☆27Updated last year
- ☆25Updated last year
- ☆11Updated 11 months ago
- A mechanism that trampoline hooks functions in x86/x64 systems.☆20Updated last month
- ☆17Updated last year
- A simple website to act as a store for havoc modules and extensions☆22Updated 5 months ago
- A BrainF*ck Inspired Shell Obfuscation Proof-of-Concept☆14Updated 8 months ago
- A simple to use single-include Windows API resolver☆17Updated 4 months ago
- Offensive Assembly code snippets.☆10Updated last year
- This repository contains several AMSI bypasses. These bypasses are based on some very nice research that has been put out by some awesome…☆23Updated 2 years ago
- freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package☆34Updated last year
- A collection of sample code used in some experiments with Sliver C2☆13Updated last year
- Slides from my talk at the Adversary Village, Defcon 30☆29Updated 2 years ago
- A Docker container used to easily compile Nim binaries generated by my tools (NimPackt and NimPlant)☆14Updated last year
- ☆18Updated last year
- A collection of tools using OCR to extract potential usernames from RDP screenshots.☆27Updated 6 months ago
- Yet, Another Packer/Loader☆25Updated last year
- Enumerate SSN (System Service Numbers or Syscall ID) and syscall instruction address in ntdll module by parsing the PEB of the current pr…☆18Updated 9 months ago
- Reverse_Shell Implemented in C++ with the ability to bypass sandboxes☆12Updated 3 years ago