michaellandi / exportstoc
Used to create wrappers and proxy libraries for Windows binaries.
☆69Updated 12 years ago
Related projects: ⓘ
- Example code for EDR bypassing☆149Updated 5 years ago
- ☆68Updated 11 months ago
- ☆179Updated 2 years ago
- Windows PE - TLS (Thread Local Storage) Injector in C/C++☆102Updated 3 years ago
- Assembly block for hooking windows API functions.☆81Updated 5 years ago
- signed-loaders documents Windows executables that can be used for side-loading DLLs.☆67Updated 5 years ago
- Convert PE files to a shellcode☆73Updated 4 years ago
- ☆161Updated 2 years ago
- An command-line RPC method enumerator, born out of RPCView's awesomeness☆97Updated 5 years ago
- Weaponizing Gigabyte driver for priv escalation and bypass PPL☆68Updated 5 years ago
- ☆146Updated 4 years ago
- Custom implementation of DbgHelp's MiniDumpWriteDump function. Uses static syscalls to replace low-level functions like NtReadVirtualMemo…☆115Updated 2 years ago
- Windows API Call Obfuscation☆86Updated last year
- Windows C/C++ Socks5 Server☆77Updated last year
- Use NT Native Registry API to create a registry that normal user can not query.☆54Updated 6 years ago
- ☆88Updated 3 years ago
- Shellcode to load an appended Dll☆89Updated 3 years ago
- Project to check which Nt/Zw functions your local EDR is hooking☆179Updated 3 years ago
- PoC to demonstrate how CLR ETW events can be tampered.☆184Updated 4 years ago
- PoC designed to evade userland-hooking anti-virus.☆85Updated 5 years ago
- A simple COM server which provides a component to run shellcode☆131Updated 4 years ago
- ☆48Updated 4 years ago
- Load and execute COFF files and Cobalt Strike BOFs in-memory☆189Updated 2 years ago
- Inject shellcode to process using Windows NTAPI for bypassing EDRs and Antiviruses☆40Updated 3 years ago
- APC DLL Injector with NtQueueApcThread and wake up thread support☆44Updated 6 years ago
- ☆110Updated this week
- A modified RunPE (process hollowing) technique avoiding the usage of SetThreadContext by appending a TLS section which calls the original…☆91Updated 4 years ago
- ☆131Updated this week
- PoC: Rebuild A New Path Back to the Heaven's Gate (HITB 2021)☆100Updated 3 years ago
- Process Doppelgänging☆152Updated 6 years ago