mrexodia / RiscyWorkshopLinks
Payload Obfuscation for Red Teams workshop materials
☆52Updated last month
Alternatives and similar repositories for RiscyWorkshop
Users that are interested in RiscyWorkshop are comparing it to the libraries listed below
Sorting:
- various methods of making API calls☆19Updated 6 months ago
- A synergized Visual Studio and Rust development environment☆19Updated 6 months ago
- Callstack spoofing using a VEH because VEH all the things.☆22Updated 4 months ago
- Proof-of-concept kernel driver that hijacks the Windows kernel extension table mechanism to preserve process notify callbacks even when a…☆83Updated 3 weeks ago
- ☆35Updated 7 months ago
- A remote process injection using process snapshotting based on https://gitlab.com/ORCA000/snaploader , in rust. It creates a sacrificial …☆49Updated 6 months ago
- Rust template/library for implementing your own COFF loader☆56Updated 6 months ago
- ☆87Updated 11 months ago
- use python on windows with full submodule support without installation☆29Updated 6 months ago
- Dynamically resolve API function addresses at runtime in a secure manner.☆67Updated 3 months ago
- A lexer and parser for Sleep☆20Updated 2 months ago
- Reimplementation of the KExecDD DSE bypass technique.☆51Updated 10 months ago
- a demo module for the kaine agent to execute and inject assembly modules☆39Updated 11 months ago
- ☆49Updated 4 months ago
- early cascade injection PoC based on Outflanks blog post, in rust☆60Updated 8 months ago
- ☆34Updated 3 months ago
- Demoting PPL anti-malware services to less than a guest user☆64Updated 6 months ago
- A work in progress BOF/COFF loader in Rust☆51Updated 2 years ago
- ☆30Updated 7 months ago
- havoc kaine plugin to mitigate PAGE_GUARD protected image headers using JOP gadgets☆31Updated 11 months ago
- Section-based payload obfuscation technique for x64☆64Updated 11 months ago
- example using NtCreateUserProcess in rust☆19Updated 6 months ago
- One-header configurable C++20 COFF loader☆20Updated last week
- RunPE adapted for x64 and written in C, does not use RWX☆27Updated last year
- Dll injection through code page id modification in registry. Based on jonas lykk research☆17Updated 3 years ago
- A more reliable way of resolving syscall numbers in Windows☆51Updated last year
- https://github.com/janoglezcampos/c_syscalls with the ASM rewritten by myself for Visual Studio's Compiler.☆31Updated last year
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated 2 years ago
- A powerful Windows UI monitoring and DNS exfiltration tool written in Rust, combining advanced UI event capture capabilities with secure …☆17Updated 4 months ago
- Small tool to play with IOCs caused by Imageload events☆42Updated 2 years ago