m4ul3r / malware
malware written for educational purposes
☆61Updated 3 months ago
Alternatives and similar repositories for malware:
Users that are interested in malware are comparing it to the libraries listed below
- Sleep obfuscation for shellcode implants and their reflective shit☆51Updated last year
- Writing Nimless Nim - Slides and source for BSIDESKC 2024 talk.☆75Updated 8 months ago
- Indirect syscalls + DInvoke made simple.☆90Updated last month
- PoC XLL builder in Python/Nim☆44Updated 2 years ago
- NimReflectiveLoader is a Nim-based tool for in-memory DLL execution using Reflective DLL Loading.☆26Updated last year
- ☆47Updated last year
- Windows Thread Pool Injection Havoc Implementation☆28Updated 10 months ago
- Threadless shellcode injection tool☆63Updated 6 months ago
- Sample Rust Hooking Engine☆35Updated 10 months ago
- ☆39Updated 2 years ago
- Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already s…☆58Updated last year
- A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders Stardust☆83Updated 10 months ago
- ☆40Updated last year
- Just another C2 Redirector using CloudFlare.☆86Updated 9 months ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆46Updated 9 months ago
- ☆52Updated 3 months ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆80Updated 4 months ago
- Construct the payload at runtime using an array of offsets☆61Updated 8 months ago
- malleable profile generator GUI for Havoc☆56Updated last year
- Section-based payload obfuscation technique for x64☆59Updated 6 months ago
- Impacket pre-compiled binaries☆15Updated last year
- ☆122Updated 5 months ago
- Rewrite to fit my needs☆27Updated 7 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆38Updated 7 months ago
- Utilities for obfuscating shellcode☆51Updated 7 months ago
- A process injection technique using only thread context manipulation☆25Updated last year
- ☆48Updated 3 months ago
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆74Updated last month