magicsword-io / LOLDriversLinks
Living Off The Land Drivers
☆1,327Updated 3 weeks ago
Alternatives and similar repositories for LOLDrivers
Users that are interested in LOLDrivers are comparing it to the libraries listed below
Sorting:
- ☆1,734Updated last year
- EDR Lab for Experimentation Purposes☆1,380Updated last week
- A set of fully-undetectable process injection techniques abusing Windows Thread Pools☆1,211Updated last year
- The multi-platform memory acquisition tool.☆880Updated last month
- A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the …☆1,772Updated last year
- Project for tracking publicly disclosed DLL Hijacking opportunities.☆841Updated last week
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆787Updated last year
- ☆2,154Updated 2 years ago
- PoCs and tools for investigation of Windows process execution techniques☆943Updated 2 weeks ago
- Collection of various malicious functionality to aid in malware development☆1,786Updated last year
- A tool to kill antimalware protected processes☆1,484Updated 4 years ago
- A memory-based evasion technique which makes shellcode invisible from process start to end.☆1,195Updated 2 years ago
- Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes☆1,032Updated 2 years ago
- ☆513Updated last year
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,532Updated last year
- Spartacus DLL/COM Hijacking Toolkit☆1,070Updated last year
- Nidhogg is an all-in-one simple to use windows kernel rootkit.☆2,146Updated this week
- Win32 and Kernel abusing techniques for pentesters☆968Updated 2 years ago
- A modern 32/64-bit position independent implant template☆1,266Updated 8 months ago
- Awesome EDR Bypass Resources For Ethical Hacking☆1,342Updated last month
- Hardcore Debugging☆925Updated 2 months ago
- Original C Implementation of the Hell's Gate VX Technique☆1,125Updated 4 years ago
- AV/EDR evasion via direct system calls.☆1,758Updated 3 years ago
- ☆771Updated 2 years ago
- Dynamic unpacker based on PE-sieve☆778Updated 2 months ago
- ☆598Updated 2 weeks ago
- A tool that takes over Windows Updates to craft custom downgrades and expose past fixed vulnerabilities☆688Updated last year
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆688Updated 3 weeks ago
- Elastic Security detection content for Endpoint☆1,327Updated this week
- A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analys…☆412Updated 9 months ago