NailaoLoader: Hiding Execution Flow via Patching
☆24Feb 27, 2025Updated last year
Alternatives and similar repositories for NailaoLoader-Hiding-Execution-Flow
Users that are interested in NailaoLoader-Hiding-Execution-Flow are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Utilizing DLang For Offensive Operations.☆15May 29, 2025Updated last year
- Proxy function calls through the thread pool with ease☆31Feb 27, 2025Updated last year
- OFFZONE 2024 Malware Persistence workshop☆23Dec 18, 2024Updated last year
- Cobalt Strike UDRL for memory scanner evasion.☆50Dec 4, 2023Updated 2 years ago
- Reversed WintaPix Malware Source code | That targets countries in the Middle East and abuse KeServiceDescriptorTable(SSDT), persistence a…☆21Jul 6, 2024Updated 2 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- ☆38Apr 15, 2025Updated last year
- Reverse engineering malware samples☆16Dec 3, 2021Updated 4 years ago
- Using call gadgets to break the call stack signature used by Elastic on proxying a module load. Provided as a Crystal Palace shared libra…☆88Nov 6, 2025Updated 10 months ago
- StoneKeeper C2, an experimental EDR evasion framework for research purposes☆206Dec 25, 2024Updated last year
- FrostLock Injection is a freeze/thaw-based code injection technique that uses Windows Job Objects to temporarily freeze (suspend) a targe…☆46Apr 6, 2025Updated last year
- Shellcode capable of bypassing EAF / IAF mitigations☆29Apr 11, 2023Updated 3 years ago
- A simple rpc2socks alternative in pure Go.☆32Jul 8, 2024Updated 2 years ago
- Stage 0☆170Dec 18, 2024Updated last year
- A tool designed to hook into Windows applications and output named (and anonymous?) pipe traffic.☆18Feb 27, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Rehashing APIs to prevent hash based detection☆14Jan 7, 2025Updated last year
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆132Jul 11, 2025Updated last year
- ☆19Jan 8, 2026Updated 8 months ago
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆193Nov 27, 2024Updated last year
- This project is an EDRSandblast fork, adding some features and custom pieces of code.☆24Sep 29, 2023Updated 2 years ago
- A process injection technique using only thread context manipulation☆43Dec 18, 2023Updated 2 years ago
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆73May 1, 2024Updated 2 years ago
- Implementation of KlezVirus' silent moonwalk approach for payloads☆18Feb 13, 2026Updated 7 months ago
- Shellcode loader written in C and Assembly utilizing direct or indirect syscalls to evade UM EDR hooks☆142Dec 22, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Examples how to use a Assm (Assembly) in a go.☆24Apr 21, 2025Updated last year
- Shellcode Loader Utilizing ETW Events☆65Feb 26, 2025Updated last year
- NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-bui…☆241Feb 12, 2025Updated last year
- BOF with Synthetic Stackframe☆265Oct 30, 2025Updated 10 months ago
- PoC XLL builder in Python/Nim☆50Nov 21, 2022Updated 3 years ago
- ☆20Nov 8, 2020Updated 5 years ago
- Identifies bad bytes from static analysis with any Anti-Virus scanner.☆129Jul 5, 2024Updated 2 years ago
- PoC☆12Apr 7, 2025Updated last year
- ☆130Jan 23, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A small red team course☆41Jun 6, 2023Updated 3 years ago
- CTF source code(s) from multiple websites.☆10May 4, 2025Updated last year
- ☆41Mar 12, 2025Updated last year
- Collection of one-liners to bypass User Account Control (UAC) in Windows. These techniques exploit certain behavior in Windows applicatio…☆193Jul 22, 2026Updated 2 months ago
- Windows memory scanner for call stack spoofing detection, unbacked shellcode, injected DLLs and in-memory C2 implants.☆39May 22, 2026Updated 4 months ago
- can convert EXE/DLL into position-independent shellcode☆64Sep 14, 2026Updated 2 weeks ago
- Bypass Credential Guard by patching WDigest.dll using only NTAPI functions☆269Apr 8, 2025Updated last year