A universal binary patching dll.
☆124Oct 9, 2024Updated last year
Alternatives and similar repositories for dll-universal-patcher
Users that are interested in dll-universal-patcher are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Generate a proxy dll for arbitrary dll☆250Oct 19, 2024Updated last year
- BOF for C2 framework☆45Nov 9, 2024Updated last year
- Kernel-mode Paravirtualization in Ring 2, LLVM based linker, and some other things!☆457Apr 19, 2025Updated last year
- Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths☆365Aug 11, 2024Updated 2 years ago
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆193Nov 27, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Easily search LLVM headers for all major versions!☆19Sep 14, 2025Updated last year
- Mixed Boolean Arithmetic Simplification using E-Graphs☆24May 1, 2025Updated last year
- Admin to Kernel code execution using the KSecDD driver☆272Apr 19, 2024Updated 2 years ago
- Implant drop-in for EDR testing☆144Nov 15, 2023Updated 2 years ago
- A COFF Loader written in Rust☆144Dec 1, 2025Updated 9 months ago
- ☆19Feb 22, 2025Updated last year
- Moonwalk++: Simple POC Combining StackMoonwalking and Memory Encryption☆233Dec 17, 2025Updated 9 months ago
- A basic implementation of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆78Mar 29, 2025Updated last year
- An example reference design for a proposed BOF PE☆246Jan 23, 2026Updated 7 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- ☆60Oct 24, 2024Updated last year
- Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) Phan…☆285Sep 18, 2024Updated 2 years ago
- a demo module for the kaine agent to execute and inject assembly modules☆41Aug 28, 2024Updated 2 years ago
- Signtool for expired certificates☆525Jun 10, 2023Updated 3 years ago
- A work in progress BOF/COFF loader in Rust☆50Mar 22, 2023Updated 3 years ago
- Hooking Windows' exception dispatcher to protect process's PML4☆271Jan 24, 2025Updated last year
- ☆110Aug 21, 2024Updated 2 years ago
- A C++ proof of concept demonstrating the exploitation of Windows Protected Process Light (PPL) by leveraging COM-to-.NET redirection and …☆335Mar 6, 2025Updated last year
- Hooked create process injection for meterpreter☆24Jun 16, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆126Sep 1, 2024Updated 2 years ago
- A set of LLVM and GCC based plugins that perform code obfuscation.☆138Oct 20, 2025Updated 10 months ago
- Process injection alternative☆405Sep 6, 2024Updated 2 years ago
- Bypass LSA protection using the BYODLL technique☆180Sep 21, 2024Updated last year
- WinDbg-like kernel debugger for Windows, from Linux and macOS☆196Updated this week
- C++ macro for x64 programs that breaks ida hex-rays decompiler tool.☆154Apr 12, 2024Updated 2 years ago
- A lexer and parser for Sleep☆21Feb 20, 2026Updated 6 months ago
- Load a dynamic library from memory by modifying the native Windows loader☆308May 5, 2026Updated 4 months ago
- COM ViewLogger — new malware keylogging technique☆409Jan 6, 2025Updated last year
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Proof of Concept for manipulating the Kernel Callback Table in the Process Environment Block (PEB) to perform process injection and hijac…☆275Oct 31, 2024Updated last year
- Reverse engineering winapi function loadlibrary.☆251Apr 17, 2023Updated 3 years ago
- DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely☆396Dec 13, 2024Updated last year
- A set of programs for analyzing common vulnerabilities in COM☆265Sep 8, 2024Updated 2 years ago
- Hide your P/Invoke signatures through other people's signed assemblies☆216Mar 10, 2024Updated 2 years ago
- Stack Spoofing with Synthetic frames based on the work of namazso, SilentMoonWalk, and VulcanRaven☆270Oct 16, 2024Updated last year
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆267Aug 31, 2022Updated 4 years ago