muffins / rookit_playground
Educational repository for learning about rootkits and Windows Kernel Hooks.
☆51Updated 10 years ago
Alternatives and similar repositories for rookit_playground:
Users that are interested in rookit_playground are comparing it to the libraries listed below
- PoC for Bypassing UM Hooks By Bruteforcing Intel Syscalls☆38Updated 9 years ago
- public bugs/proof of concepts☆48Updated 4 years ago
- Shellcode Of Death☆38Updated 11 years ago
- Python script to inject and run shellcodes through TLS callbacks☆50Updated 9 years ago
- Gozi-MBR-rootkit Bootkit Modified☆68Updated 8 years ago
- Anti-technique Codes, Detection of Anti-technique codes☆38Updated 11 years ago
- CAPE monitor DLLs☆41Updated 5 years ago
- Supporting Files on my analysis of the malware designated hdroot.☆59Updated 8 years ago
- DLL Injection Library & Tools☆72Updated 8 years ago
- ☆51Updated 8 years ago
- Windows Malware☆41Updated 12 years ago
- fun rootkits stuff!☆18Updated 9 years ago
- Old exploits and code for my self-referencing PML4 technique (2014)☆31Updated 10 years ago
- Ring3 Rootkit Backdoor.☆41Updated 9 years ago
- A tiny PoC to inject and execute code into explorer.exe with WM_SETTEXT+WM_COPYDATA+SetThreadContext☆50Updated 7 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆38Updated 8 years ago
- Malware Analysis, Anti-Analysis, and Anti-Anti-Analysis☆45Updated 7 years ago
- x86_64 linux rootkit using debug registers☆52Updated 3 years ago
- The Grum Spam Bot☆20Updated 10 years ago
- ☆51Updated 8 years ago
- Exploit code used for the HackSysExtremeVulnerableDriver.☆43Updated 6 years ago
- a program to detect reflective dll injection on a live machine☆74Updated 9 years ago
- ☆45Updated 6 years ago
- An exploit for CVE-2016-7255 on Windows 7/8/8.1/10(pre-anniversary) 64 bit☆81Updated 8 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 7 years ago
- Introduce you to shellcode development.☆23Updated 8 years ago
- ☆43Updated 6 years ago
- ☆34Updated 7 years ago
- ☆31Updated 8 years ago
- Hidden kernel mode code execution for bypassing modern anti-rootkits.☆83Updated 14 years ago