magicsword-io / LOLDriversLinks
Living Off The Land Drivers
☆1,363Updated this week
Alternatives and similar repositories for LOLDrivers
Users that are interested in LOLDrivers are comparing it to the libraries listed below
Sorting:
- ☆1,769Updated last year
- EDR Lab for Experimentation Purposes☆1,399Updated 2 months ago
- A set of fully-undetectable process injection techniques abusing Windows Thread Pools☆1,230Updated 2 years ago
- A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the …☆1,794Updated last year
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆798Updated last year
- The multi-platform memory acquisition tool.☆924Updated 2 months ago
- ☆2,171Updated 2 years ago
- Project for tracking publicly disclosed DLL Hijacking opportunities.☆860Updated last week
- Collection of various malicious functionality to aid in malware development☆1,822Updated last year
- ☆514Updated 2 years ago
- Win32 and Kernel abusing techniques for pentesters☆971Updated 2 years ago
- A memory-based evasion technique which makes shellcode invisible from process start to end.☆1,197Updated 2 years ago
- A modern 32/64-bit position independent implant template☆1,279Updated 9 months ago
- PoCs and tools for investigation of Windows process execution techniques☆954Updated this week
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,560Updated last year
- Hardcore Debugging☆927Updated this week
- Spartacus DLL/COM Hijacking Toolkit☆1,077Updated last year
- Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes☆1,037Updated 2 years ago
- Original C Implementation of the Hell's Gate VX Technique☆1,144Updated 4 years ago
- A tool to kill antimalware protected processes☆1,498Updated 4 years ago
- Awesome EDR Bypass Resources For Ethical Hacking☆1,441Updated 2 months ago
- ☆609Updated 2 months ago
- Dynamic unpacker based on PE-sieve☆791Updated 3 months ago
- ☆777Updated 2 years ago
- AV/EDR evasion via direct system calls.☆1,773Updated 3 years ago
- Nidhogg is an all-in-one simple to use windows kernel rootkit.☆2,182Updated last month
- Centralized resource for listing and organizing known injection techniques and POCs☆665Updated 3 weeks ago
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆691Updated 2 months ago
- Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".☆738Updated 7 months ago
- Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts wa…☆1,030Updated 2 months ago