Next gen process injection technique
☆55Jul 9, 2020Updated 6 years ago
Alternatives and similar repositories for StackBombing
Users that are interested in StackBombing are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- a stage1 DLL loader with sleep obfuscation☆36Dec 27, 2022Updated 3 years ago
- Callstack spoofing using a VEH because VEH all the things.☆24Mar 18, 2025Updated last year
- Early Bird Cryo Injections – APC-based DLL & Shellcode Injection via Pre-Frozen Job Objects☆146Apr 6, 2025Updated last year
- GhostWriting Injection Technique.☆199Mar 26, 2018Updated 8 years ago
- Malware?☆75Oct 26, 2025Updated 9 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- In-memory hiding technique☆65Jan 5, 2025Updated last year
- Your NTDLL vaccine from modern direct syscall methods.☆36Apr 5, 2022Updated 4 years ago
- PoC for DEF CON 26: Playing Malware Injection with Exploit thoughts☆25Aug 17, 2018Updated 7 years ago
- A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and re…☆471Aug 23, 2023Updated 2 years ago
- Reverse engineering winapi function loadlibrary.☆251Apr 17, 2023Updated 3 years ago
- A variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC☆376May 24, 2022Updated 4 years ago
- Use hardware breakpoint to dynamically change SSN in run-time☆281Apr 10, 2024Updated 2 years ago
- Enable or Disable TokenPrivilege(s)☆15May 17, 2024Updated 2 years ago
- Utilizing TLS callbacks to execute a payload without spawning any threads in a remote process☆291Jan 21, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- WTSRM☆215Aug 7, 2022Updated 4 years ago
- Reflective x64 PE/DLL Loader implemented using Dynamic Indirect Syscalls☆395Oct 8, 2024Updated last year
- 🗡️ A multi-user malleable C2 framework targeting Windows. Written in C++ and Python☆45Feb 6, 2026Updated 6 months ago
- Improved version of EKKO by @5pider that Encrypts only Image Sections☆124Feb 13, 2023Updated 3 years ago
- Another approach of Threadless injection discovered by @_EthicalChaos_ in c that loads a module into the target process and stomps it, an…☆187Aug 2, 2023Updated 3 years ago
- 自定义函数堆栈,从而绕过ETW检测,这个是完整版。☆15Apr 15, 2024Updated 2 years ago
- This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hol…☆74Feb 11, 2024Updated 2 years ago
- A proof of concept demonstrating the DLL-load proxying using undocumented Syscalls.☆411Jan 11, 2026Updated 6 months ago
- ☆212Nov 28, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- GeoWordlists is a tool to generate wordlists of passwords containing cities at a defined distance around the client city.☆12Nov 24, 2023Updated 2 years ago
- Stack Spoofing with Synthetic frames based on the work of namazso, SilentMoonWalk, and VulcanRaven☆270Oct 16, 2024Updated last year
- A BOF that suspends non-GUI threads for a target process or resumes them resulting in stealthy process silencing.☆58Apr 14, 2025Updated last year
- A PoC implementation for spoofing arbitrary call stacks when making sys calls (e.g. grabbing a handle via NtOpenProcess)☆592Apr 8, 2025Updated last year
- Sleep Obfuscation☆841Dec 3, 2023Updated 2 years ago
- A collection of position independent coding resources☆126Nov 15, 2025Updated 8 months ago
- Your Windows syscall hooking factory - feat Canterlot's Gate - All accessible over MCP☆131Updated this week
- A more stealthy variant of "DLL hollowing"☆368Mar 8, 2024Updated 2 years ago
- LLVM plugin to transparently apply stack spoofing and indirect syscalls to Windows x64 native calls at compile time.☆329Jan 17, 2024Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Experiment on reproducing Obfuscate & Sleep☆169Mar 14, 2021Updated 5 years ago
- Library of BOFs to interact with SQL servers☆23Apr 9, 2025Updated last year
- Waiting Thread Hijacking - injection by overwriting the return address of a waiting thread☆266Aug 31, 2025Updated 11 months ago
- Just a nice little shellcode loader using unconventional methods to avoid using signatured APIs☆23Jul 11, 2025Updated last year
- Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscal…☆323Aug 2, 2023Updated 3 years ago
- ☆10Jul 1, 2023Updated 3 years ago
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆130Jul 11, 2025Updated last year