ninpwn / DD-Oriented-ProgrammingLinks
☆9Updated 9 months ago
Alternatives and similar repositories for DD-Oriented-Programming
Users that are interested in DD-Oriented-Programming are comparing it to the libraries listed below
Sorting:
- ELF Beacon Object File (BOF) Template☆19Updated 7 months ago
- Read ETW Provider events. Inspired by ETWExplorer by Pavel Yosifovich☆16Updated 11 months ago
- ☆18Updated last month
- AIDA64DRIVER Elevation of Privilege Vulnerability☆13Updated 8 months ago
- Callstack spoofing using a VEH because VEH all the things.☆21Updated 3 months ago
- RunPE adapted for x64 and written in C, does not use RWX☆26Updated last year
- ☆31Updated 2 months ago
- A few examples of how to trap virtual memory access on Windows.☆31Updated 6 months ago
- call gates as stable comunication channel for NT x86 and Linux x86_64☆32Updated last year
- ☆31Updated 3 months ago
- example using NtCreateUserProcess in rust☆19Updated 5 months ago
- ☆30Updated 6 months ago
- ☆26Updated 4 months ago
- havoc kaine plugin to mitigate PAGE_GUARD protected image headers using JOP gadgets☆30Updated 10 months ago
- ☆48Updated 3 months ago
- Attack chain emulator. Write recipes for initial access easily☆20Updated 4 months ago
- A more reliable way of resolving syscall numbers in Windows☆49Updated last year
- Your NTDLL vaccine from modern direct syscall methods.☆35Updated 3 years ago
- ☆12Updated last year
- Easy encrypt/decrypt data with TPM☆25Updated last year
- An example of COM hijacking using a proxy DLL.☆28Updated 3 years ago
- Mentally ill EtwTi parser☆38Updated 3 months ago
- a stage1 DLL loader with sleep obfuscation☆37Updated 2 years ago
- ☆11Updated 4 months ago
- A lexer and parser for Sleep☆20Updated last month
- API Hammering with C++20☆46Updated 2 years ago
- Just another Process Injection using Process Hollowing technique.☆17Updated last year
- A proof-of-concept shellcode loader that leverages AI/ML face recognition models to verify the identity of a user on a target system☆39Updated 7 months ago
- Small tool to play with IOCs caused by Imageload events☆42Updated 2 years ago
- Dll injection through code page id modification in registry. Based on jonas lykk research☆17Updated 3 years ago