nccgroup / WindowsPatchDetector
Experimental Windows .text section Patch Detector
☆21Updated 10 years ago
Alternatives and similar repositories for WindowsPatchDetector:
Users that are interested in WindowsPatchDetector are comparing it to the libraries listed below
- A new binary injection technique, can easily go through any #CIG protected process and slip through all possible defenses without any inj…☆18Updated 7 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆29Updated 8 years ago
- PoC for Bypassing UM Hooks By Bruteforcing Intel Syscalls☆39Updated 9 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆38Updated 8 years ago
- ☆33Updated 7 years ago
- ☆16Updated 7 years ago
- ☆12Updated 7 years ago
- My conference presentations and publications☆26Updated 3 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 7 years ago
- ☆10Updated 7 years ago
- ☆28Updated 7 years ago
- Solutions to HackSysExtremeVulnerableDriver challenges though my following of @FuzzySecurity's tutorials plus futher explanations where n…☆22Updated 7 years ago
- Kernel mode windows NT API logger☆22Updated 5 years ago
- Will try to put here slides from now on when I give a talk☆24Updated 3 years ago
- Auto Inject Dll , it have three method to inject your custom dll. help you to test inject.☆10Updated 8 years ago
- Extract data of TTD trace file to a minidump☆28Updated last year
- Public repository for HEVD exploits☆20Updated 6 years ago
- ☆22Updated 4 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 7 years ago
- Malware analyses and helpful scripts☆29Updated 2 years ago
- SDBbot Unpacker Python 2.7☆9Updated 4 years ago
- ☆49Updated 7 years ago
- Code Injector Using Code Caves☆14Updated 9 years ago
- implementation of some concepts in Security and Exploiting☆13Updated 9 years ago
- Experimental: Windows .text section compare - disk versus memory☆14Updated 10 years ago
- Old exploits and code for my self-referencing PML4 technique (2014)☆31Updated 9 years ago
- IDA Pro plugin that rename functions on load, based on functionality☆19Updated 7 years ago
- ☆28Updated 6 months ago
- ☆45Updated 6 years ago
- ☆18Updated 8 years ago