niv256 / simple_rootkit
A simple LKM kernel space rootkit for v5.x linux with multiple functions.
☆10Updated 4 years ago
Alternatives and similar repositories for simple_rootkit:
Users that are interested in simple_rootkit are comparing it to the libraries listed below
- A virtualization-based endpoint security solution for Windows☆85Updated 3 years ago
- ☆91Updated 4 years ago
- ☆159Updated 3 years ago
- All my public vulnerabilities.☆13Updated 4 years ago
- In line function hooking LKM rootkit☆51Updated 5 years ago
- ☆12Updated 3 years ago
- An automatic tool for fixing dumped PE files☆41Updated 4 years ago
- Exploit Exercises for Security Researchers (arm, x86...)☆13Updated 5 years ago
- Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CV…☆226Updated 2 years ago
- ☆50Updated 6 years ago
- Yet another windows internals repo☆206Updated 3 years ago
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆137Updated 2 years ago
- Helpful WinDBG command for kernel debugging☆22Updated 4 years ago
- Do you want to use x64dbg instead of immunity debugger? oscp eCPPTv2 buffer overflow exploits pocs☆84Updated last year
- IOCTLpus can be used to make DeviceIoControl requests with arbitrary inputs (with functionality somewhat similar to Burp Repeater).☆87Updated 3 years ago
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆206Updated 4 years ago
- Code Injection, Inject malicious payload via pagetables pml4.☆234Updated 3 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆209Updated 5 years ago
- A simple Windows kernel rootkit.☆91Updated last year
- Abusing exceptions for code execution.☆110Updated 2 years ago
- A native hypervisor designed for the Windows operating system☆122Updated 4 years ago
- Rootkit Development tutorial series. Works on Kernel version 4.15 Can be adapted for 5.3+☆44Updated 3 years ago
- I will upload challenges I create for various ctf's or educational purposes here.☆23Updated 3 years ago
- Windbg2ida lets you dump each step in Windbg then shows these steps in IDA☆76Updated 9 months ago
- A multi-staged malware that contains a kernel mode rootkit and a remote system shell.☆71Updated 3 years ago
- MemoryRanger protects kernel data and code by running drivers and hosting data in isolated kernel enclaves using VT-x and EPT features. M…☆225Updated 4 years ago
- Windows Kernel Programming☆127Updated 4 years ago
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆125Updated 3 years ago
- ☆19Updated this week
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆142Updated 2 years ago