magicsword-io / LOLDriversLinks
Living Off The Land Drivers
☆1,310Updated this week
Alternatives and similar repositories for LOLDrivers
Users that are interested in LOLDrivers are comparing it to the libraries listed below
Sorting:
- ☆1,728Updated last year
- EDR Lab for Experimentation Purposes☆1,373Updated this week
- The multi-platform memory acquisition tool.☆866Updated 2 weeks ago
- A set of fully-undetectable process injection techniques abusing Windows Thread Pools☆1,193Updated last year
- A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the …☆1,764Updated 11 months ago
- Project for tracking publicly disclosed DLL Hijacking opportunities.☆833Updated last month
- ☆2,152Updated 2 years ago
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆780Updated last year
- PoCs and tools for investigation of Windows process execution techniques☆935Updated this week
- Win32 and Kernel abusing techniques for pentesters☆965Updated 2 years ago
- A memory-based evasion technique which makes shellcode invisible from process start to end.☆1,191Updated 2 years ago
- A tool to kill antimalware protected processes☆1,481Updated 4 years ago
- Spartacus DLL/COM Hijacking Toolkit☆1,063Updated last year
- A modern 32/64-bit position independent implant template☆1,260Updated 7 months ago
- Hardcore Debugging☆916Updated last month
- ☆511Updated last year
- ☆770Updated 2 years ago
- Dynamic unpacker based on PE-sieve☆775Updated last month
- Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes☆1,024Updated 2 years ago
- Original C Implementation of the Hell's Gate VX Technique☆1,116Updated 4 years ago
- Collection of various malicious functionality to aid in malware development☆1,768Updated last year
- Awesome EDR Bypass Resources For Ethical Hacking☆1,315Updated 2 weeks ago
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,522Updated last year
- ☆589Updated 2 weeks ago
- AV/EDR evasion via direct system calls.☆1,750Updated 3 years ago
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆682Updated last week
- Centralized resource for listing and organizing known injection techniques and POCs☆646Updated last month
- A tool that takes over Windows Updates to craft custom downgrades and expose past fixed vulnerabilities☆682Updated last year
- Elastic Security detection content for Endpoint☆1,311Updated this week
- SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also conta…☆466Updated 4 months ago