kkent030315 / razy_importer
Rust implementation of lazy_importer
☆56Updated last year
Alternatives and similar repositories for razy_importer:
Users that are interested in razy_importer are comparing it to the libraries listed below
- Rust bindings for VMProtect.☆25Updated last year
- Finding Truth in the Shadows☆89Updated 2 years ago
- Exploiting the KsecDD Windows driver through Server Silos☆66Updated 5 months ago
- A set of LLVM and GCC based plugins that perform code obfuscation.☆123Updated last month
- Dynamically invoke arbitrary code with Rust tricks, #[no_std] support, and compatibility for x64, x86, ARM64 and WoW64 (DInvoke)☆60Updated 3 weeks ago
- ☆83Updated 10 months ago
- ☆46Updated last year
- Callstack spoofing using a VEH because VEH all the things.☆21Updated last month
- Detours implementation (x64/x86) which used only ntdll import☆90Updated 10 months ago
- a demo module for the kaine agent to execute and inject assembly modules☆37Updated 7 months ago
- A thin Rust wrapper around Windows' hardware breakpoints.☆21Updated 2 years ago
- A Rust crate to parse user-mode minidump files generated on Windows☆14Updated last month
- ☆108Updated 2 years ago
- A VMWare logger using built-in backdoor.☆29Updated 6 months ago
- Minifilter Callback Patching Proof-of-Concept☆67Updated 2 years ago
- Safely manage the unloading of DLLs that have been hooked into a process. Context: https://github.com/KNSoft/KNSoft.SlimDetours/discussio…☆71Updated this week
- Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)☆99Updated last year
- Reimplementation of the KExecDD DSE bypass technique.☆47Updated 7 months ago
- A work in progress BOF/COFF loader in Rust☆47Updated 2 years ago
- x86-64 virtualizing obfuscator written in Rust☆75Updated last year
- A tool for detecting manual/direct syscalls in x86 and x64 processes using Nirvana Hooks.☆110Updated 3 years ago
- ☆42Updated 3 weeks ago
- A PoC packer written in Rust!☆68Updated 3 years ago
- Boilerplate to develop raw and truly Position Independent Code (PIC).☆48Updated 3 months ago
- In-memory hiding technique☆48Updated 3 months ago
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated last year
- A PoC for adding NtContinue to CFG allowed list in order to make Ekko work in a CFG protected process☆99Updated 2 years ago
- a stage1 DLL loader with sleep obfuscation☆35Updated 2 years ago
- An example of an external LLVM plugin module transform pass for the latest versions.☆14Updated 5 months ago
- A Poc on blocking Procmon from monitoring network events☆101Updated 2 years ago