m417z / CVE-2023-36003-POCLinks
Privilege escalation using the XAML diagnostics API (CVE-2023-36003)
☆92Updated last year
Alternatives and similar repositories for CVE-2023-36003-POC
Users that are interested in CVE-2023-36003-POC are comparing it to the libraries listed below
Sorting:
- ☆136Updated last year
- A modification to fortra's CVE-2023-28252 exploit, compiled to exe☆54Updated last year
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆46Updated last year
- DebugAmsi is another way to bypass AMSI through the Windows process debugger mechanism.☆97Updated last year
- ☆143Updated 8 months ago
- This is way to load a shellcode, and obfuscate it, so it avoids scantime detection.☆72Updated 2 months ago
- Convert your shellcode into an ASCII string☆96Updated 3 weeks ago
- Note: I am not responsible for any bad act. This is written by Chirag Artani to demonstrate the vulnerability.☆86Updated 10 months ago
- Construct the payload at runtime using an array of offsets☆63Updated last year
- A lightweight tool that injects a custom assembly proxy into a target process to silently bypass AMSI scanning by redirecting AmsiScanBuf…☆41Updated 2 months ago
- ☆36Updated 7 months ago
- Create Anti-Copy DRM Malware☆59Updated 11 months ago
- This repo goes with the blog entry at blog.malicious.group entitled "Writing your own RDI / sRDI loader using C and ASM".☆86Updated 2 years ago
- CVE-2024-30090 - LPE PoC☆107Updated 9 months ago
- ☆107Updated 2 years ago
- A PoC demonstrating code execution via DLL Side-Loading in WinSxS binaries.☆112Updated last year
- We found a way to DLL sideload with cleanmgr.exe☆80Updated 4 months ago
- 「⚠️」Performing a BYOVD on the truesight.sys driver☆38Updated 7 months ago
- random code snippets, useful for getting started☆121Updated 8 months ago
- Malleable shellcode loader written in C and Assembly utilizing direct or indirect syscalls for evading EDR hooks☆111Updated 6 months ago
- Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.☆86Updated last week
- Find DLLs with RWX section☆81Updated 2 years ago
- ☆67Updated last year
- Automated .NET AppDomain hijack payload generation☆126Updated 5 months ago
- Work, timer, and wait callback example using solely Native Windows APIs.☆89Updated last year
- This project is an implant framework designed for long term persistent access to Windows machines.☆110Updated last year
- An updated version of keystroke logger targeting the Remote Desktop Protocol (RDP) related processes, It utilizes a low-level keyboard in…☆104Updated last year
- Bypasses AMSI protection through remote memory patching and parsing technique.☆44Updated 2 months ago
- Scan your computer for known vulnerable and known malicious Windows drivers using loldrivers.io☆84Updated this week
- Windows Kernel Offensive Toolset☆125Updated 3 weeks ago