niv256 / simple_rootkitLinks
A simple LKM kernel space rootkit for v5.x linux with multiple functions.
☆10Updated 5 years ago
Alternatives and similar repositories for simple_rootkit
Users that are interested in simple_rootkit are comparing it to the libraries listed below
Sorting:
- ☆108Updated 6 years ago
- Set of antianalysis techniques found in malware☆131Updated 2 years ago
- ☆200Updated 7 years ago
- Yet another windows internals repo☆209Updated 4 years ago
- My repository to upload drivers from different books and all the information related to windows internals.☆161Updated 6 years ago
- Parsers for custom malware formats ("Funky malware formats")☆97Updated 3 years ago
- Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CV…☆248Updated 3 years ago
- CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.☆333Updated last year
- A curated list of Hyper-V exploitation resources, fuzzing and vulnerability research.☆436Updated 7 months ago
- Exploit Development - Weaponized Exploit and Proof of Concepts (PoC)☆233Updated 2 years ago
- Kernel Exploits☆260Updated 4 years ago
- My notes while studying Windows internals☆440Updated 11 months ago
- All my public vulnerabilities.☆14Updated 4 years ago
- ☆12Updated 4 years ago
- This project provides a collection of Microsoft Windows kernel structures, unions and enumerations. Most of them are not officially docum…☆224Updated 3 weeks ago
- A virtualization-based endpoint security solution for Windows☆88Updated 4 years ago
- This is a place to share my miscellaneous projects.☆115Updated 5 years ago
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆211Updated 5 years ago
- Do you want to use x64dbg instead of immunity debugger? oscp eCPPTv2 buffer overflow exploits pocs☆89Updated last year
- POC for cve-2019-1458☆177Updated 3 years ago
- Virus Exchange (VX) - Collection of malware or assembly code used for "offensive" purposed.☆190Updated 3 months ago
- A kernel rootkit with remote command and control interface for windows☆109Updated 7 years ago
- Driver Initial Reconnaissance Tool☆124Updated 5 years ago
- Dump of win32k POCs for bugs I've found☆381Updated 3 years ago
- ☆123Updated 5 years ago
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆127Updated 3 years ago
- ☆164Updated 4 years ago
- Winsock accept() Backdoor Implant.☆118Updated 4 years ago
- Windows Kernel Drivers fuzzer☆375Updated 8 years ago
- WIP Emotet Control Flow Unflattening using miasm and radare2☆23Updated 2 years ago