lem0nSec / Alcatraz
An example of Windows self-replicating malware.
☆10Updated 2 years ago
Alternatives and similar repositories for Alcatraz:
Users that are interested in Alcatraz are comparing it to the libraries listed below
- Evilbytecode-Gate resolves Windows System Service Numbers (SSNs) using two methods: analyzing the Guard CF Table in ntdll.dll and parsing…☆13Updated last week
- run process as PPL Antimalware☆11Updated last year
- really ?☆12Updated 10 months ago
- ☆12Updated 2 years ago
- Hooking Heavens Gate in a weekend☆13Updated 3 years ago
- ☆17Updated last year
- XOrCryptEx lightweight C Utility/Algorithm☆11Updated 2 years ago
- ☆27Updated 6 months ago
- Listing UDP connections with remote address without sniffing.☆30Updated last year
- A repository filled with ideas to break/detect direct syscall techniques☆26Updated 2 years ago
- Dangling COM Keys Finder☆15Updated 3 years ago
- Read ETW Provider events. Inspired by ETWExplorer by Pavel Yosifovich☆14Updated 6 months ago
- A PoC tool for exploiting leaked process and thread handles☆30Updated 11 months ago
- Process Injection: APC Injection☆29Updated 4 years ago
- Offensive Assembly code snippets.☆12Updated last year
- Code injection via ZwCreateSection, ZwUnmapViewOfSection. C++ example☆17Updated 3 years ago
- An example of how to use Microsoft Windows Warbird technology☆27Updated last year
- ☆27Updated 2 years ago
- In-memory hiding technique☆45Updated last week
- Research of modifying exported function names at runtime (C/C++, Windows)☆17Updated 7 months ago
- Repository of Microsoft Driver Block Lists based off of OS-builds☆39Updated 9 months ago
- A crappy hook on SpAcceptLsaModeContext that prints incoming auth attempts. WIP☆33Updated 3 years ago
- Just another casual shellcode native loader☆24Updated 2 years ago
- This repo for Windows x32-x64 Kernel/Driver/User Mode Exploitation writeups and exploits☆23Updated 8 months ago
- ☆21Updated 8 months ago
- SoulExtraction is a windows driver library for extracting cert information in windows drivers☆21Updated last year
- A simple PE loader.☆25Updated 2 years ago