nbaertsch / nimvoke
Indirect syscalls + DInvoke made simple.
☆90Updated 4 months ago
Alternatives and similar repositories for nimvoke
Users that are interested in nimvoke are comparing it to the libraries listed below
Sorting:
- Writing Nimless Nim - Slides and source for BSIDESKC 2024 talk.☆81Updated 11 months ago
- malware written for educational purposes☆67Updated 6 months ago
- NimReflectiveLoader is a Nim-based tool for in-memory DLL execution using Reflective DLL Loading.☆27Updated last year
- Sleep obfuscation for shellcode implants and their reflective shit☆51Updated last year
- PoC XLL builder in Python/Nim☆46Updated 2 years ago
- Mirage is a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆76Updated 2 months ago
- ForsHops☆131Updated last month
- Simple EDR that injects a DLL into a process to place a hook on specific Windows API☆91Updated last year
- A python script that automates a C2 Profile build☆40Updated last month
- Sample Rust Hooking Engine☆36Updated last year
- Various one-off pentesting projects written in Nim. Updates happen on a whim.☆152Updated 4 months ago
- Impersonate Tokens using only NTAPI functions☆71Updated last month
- Beacon Object File (BOF) to obtain Entra tokens via authcode flow.☆42Updated this week
- ☆106Updated 3 months ago
- Your syscall factory☆121Updated 2 months ago
- Adversary Emulation Framework☆98Updated 9 months ago
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆74Updated 9 months ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆88Updated 2 weeks ago
- A collection of position independent coding resources☆78Updated 2 months ago
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆28Updated this week
- ☆110Updated 5 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆38Updated 10 months ago
- A web assembly (WASM) phishing lure generator based on pre-built templates and written in Rust with some GenAI assistance. W.A.L.K. aims …☆82Updated 8 months ago
- ☆106Updated last month
- Windows Thread Pool Injection Havoc Implementation☆29Updated last year
- Threadless shellcode injection tool☆64Updated 9 months ago
- Construct the payload at runtime using an array of offsets☆63Updated 10 months ago
- malleable profile generator GUI for Havoc☆55Updated 2 years ago
- ☆126Updated 8 months ago
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆61Updated last year