maezyn / dolos
Metamorphic engine written in Rust.
☆13Updated 2 years ago
Alternatives and similar repositories for dolos:
Users that are interested in dolos are comparing it to the libraries listed below
- Admin to Kernel code execution using the KSecDD driver☆244Updated last year
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆142Updated 2 years ago
- Hooking Windows' exception dispatcher to protect process's PML4☆162Updated 2 months ago
- Various Process Injection Techniques☆148Updated 2 years ago
- LLVM plugin to transparently apply stack spoofing and indirect syscalls to Windows x64 native calls at compile time.☆280Updated last year
- Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling withou…☆198Updated 5 months ago
- Collection of hypervisor detections☆230Updated 6 months ago
- PoC Anti-Rootkit/Anti-Cheat Driver.☆186Updated 6 months ago
- Dont Call Me Back - Dynamic kernel callback resolver. Scan kernel callbacks in your system in a matter of seconds!☆231Updated 9 months ago
- uefi diskless persistence technique + OVMF secureboot bypass☆61Updated 11 months ago
- Recursive and arbitrary code execution at kernel-level without a system thread creation☆154Updated 2 years ago
- A tutorial on how to write a packer for Windows!☆269Updated last year
- Rusty Arsenal - A collection of experimental Process Injection and Post-Exploitation Techniques in Rust☆250Updated last year
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆276Updated 6 months ago
- A simple Windows kernel rootkit.☆91Updated last year
- Reverse engineering winapi function loadlibrary.☆188Updated 2 years ago
- Process Injection using Thread Name☆256Updated 7 months ago
- Rusty Hypervisor - Windows UEFI Blue Pill Type-1 Hypervisor in Rust (Codename: Illusion)☆251Updated 7 months ago
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆109Updated 7 months ago
- ☆44Updated 2 months ago
- ☆179Updated 2 weeks ago
- Call stack spoofing for Rust☆333Updated 2 months ago
- masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)☆121Updated last year
- A tool that is used to hunt vulnerabilities in x64 WDM drivers☆194Updated 3 weeks ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆244Updated 2 years ago
- Process Hollowing in C++ (x86 / x64) - Process PE image replacement☆144Updated last year
- x86-64 code/pe virtualizer☆181Updated 4 months ago
- ☆46Updated last year
- Kernel Security driver used to block past, current and future process injection techniques on Windows Operating System.☆152Updated 2 years ago
- Helpful WinDBG command for kernel debugging☆22Updated 4 years ago