kunte0 / Opossum-Attack-PoCLinks
Opossum Attack: Application Layer Desynchronization using Opportunistic TLS
☆14Updated 4 months ago
Alternatives and similar repositories for Opossum-Attack-PoC
Users that are interested in Opossum-Attack-PoC are comparing it to the libraries listed below
Sorting:
- eBPF Memory Dump Tool☆92Updated 3 months ago
- Userland exec PoC to be used as attack vector technique☆94Updated last month
- Rust Linux Kernel Module designed for LKM rootkit detection☆54Updated 8 months ago
- Cheat sheet to detect and remove linux kernel rootkit☆75Updated 11 months ago
- OffensiveCon 2024 Repo, contains PoCs and materials for talk "UEFI and the Task of the Translator"☆43Updated last year
- Comprehensive Windows Syscall Extraction & Analysis Framework☆153Updated 3 months ago
- Open Source eBPF Malware Analysis Framework☆53Updated last year
- Vibe Malware Triage - MCP server for static PE analysis.☆73Updated last week
- This repository contains the public work I produced, wheter it is research, post, slides, sometimes videos, and materials of my talks.☆52Updated 4 months ago
- ☆39Updated 11 months ago
- Proof-of-concept modular implant platform leveraging v8☆55Updated 9 months ago
- GoResolver is a Go analysis tool using both Go symbol extraction and Control Flow Graph (CFG) similarity to identify and resolve the func…☆75Updated 3 months ago
- Ghosting-AMSI☆18Updated 7 months ago
- BINARLY Research Tools and PoCs☆39Updated last year
- ☆163Updated last week
- LD_PRELOAD library to bypass TLS certificate verification for debugging and testing☆91Updated 2 months ago
- ☆90Updated 9 months ago
- A C++ tool for process memory scanning & suspicious telemetry generation that attempts to detect a number of malicious techniques used by…☆84Updated last year
- ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.☆132Updated 7 months ago
- ☆64Updated last year
- In-Memory Rootkit For Linux and BSD☆86Updated 3 months ago
- Chameleon is a polymorphic engine for x86_64 position independent shellcode that has been created out of the need to evade signature-base…☆44Updated 2 months ago
- ☆20Updated last month
- rpv-web is a browser based frontend for the rpv library☆25Updated 2 weeks ago
- A tool to interact with Windows drivers to perform a raw disk read and parse out target files without calling standard Windows file APIs☆98Updated 3 months ago
- The Frida-Jit-unPacker aims at helping researchers and analysts understand the behavior of packed malicious .NET samples.☆64Updated last year
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 9 months ago
- ☆31Updated 9 months ago
- GERMY is a Linux Kernel n-day in the N_GSM line discipline☆49Updated last year
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆136Updated 6 months ago