malefax / AdrishyaLinks
Author of Project Adrishya a rootkit which use ftrace mechanism to hook syscall; (write this because God commanded me); work for both x86_64 and arm; CREDIT-(Oleksii Lozovskyi{ilammy})FOUNDER OF FTRACE HOOKING
☆27Updated 3 months ago
Alternatives and similar repositories for Adrishya
Users that are interested in Adrishya are comparing it to the libraries listed below
Sorting:
- OffensiveCon 2024 Repo, contains PoCs and materials for talk "UEFI and the Task of the Translator"☆43Updated last year
- Repo with different exploits & PoCs☆64Updated 7 months ago
- Plugin interface for remote communications with Binary Ninja database and MCP server for interfacing with LLMs.☆50Updated 7 months ago
- Exploit targeting NT kernel in 24H2 Windows Insider Preview☆147Updated last year
- Windows KASLR bypass using prefetch side-channel☆172Updated last year
- Tools to bypass flawed SELinux policies using the init_module system call☆58Updated 2 years ago
- Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation☆125Updated last year
- CVE-2024-30090 - LPE PoC☆107Updated last year
- ☆39Updated last year
- Aplos an extremely simple fuzzer for Windows binaries.☆68Updated 10 months ago
- Assisting Go Analysis and Reversing☆92Updated last month
- Attacking the cleanup_module function of a kernel module☆55Updated 5 months ago
- Proof-of-Concept for CVE-2024-26218☆54Updated last year
- CVE-2025-50168 Exploit PoC — Pwn2Own Berlin 2025 - LPE(Windows 11) winning bug.☆132Updated last month
- ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.☆131Updated 8 months ago
- Slides for COM Hijacking AV/EDR Talk on 38c3☆74Updated 11 months ago
- bypassing intel txt's tboot integrity checks via coreboot shim☆83Updated 9 months ago
- ☆85Updated 4 months ago
- Slaying multi-language LLVM IR with obfuscation passes to achieve JIT execution☆125Updated last month
- TeamViewer User to Kernel Elevation of Privilege PoC. CVE-2024-7479 and CVE-2024-7481. ZDI-24-1289 and ZDI-24-1290. TV-2024-1006.☆135Updated last year
- A journal for $6,000 Riot Vanguard bounty.☆66Updated 2 years ago
- Proof of concepts demonstrating some aspects of the Windows kernel shadow stack mitigation.☆53Updated 6 months ago
- rp-bf: A library to bruteforce ROP gadgets by emulating a Windows user-mode crash-dump☆121Updated last year
- HEVD Exploit: BufferOverflowNonPagedPoolNx on Windows 10 22H2 - Escalating from Low Integrity to SYSTEM via Aligned Chunk Confusion☆63Updated 8 months ago
- ☆122Updated last year
- CVE-2024-11477 7Zip Code Execution Writeup and Analysis☆65Updated last year
- Proof of Concept for manipulating the Kernel Callback Table in the Process Environment Block (PEB) to perform process injection and hijac…☆264Updated last year
- Analysis of the vulnerability☆50Updated last year
- Rerousces related to time-travel debugging (TTD)☆24Updated last month
- Payload Obfuscation for Red Teams workshop materials☆78Updated last month