qtc-de / rpv
rpv is a v library for analyzing RPC servers and interfaces on the Windows operating system
☆32Updated last week
Alternatives and similar repositories for rpv:
Users that are interested in rpv are comparing it to the libraries listed below
- rpv-web is a browser based frontend for the rpv library☆24Updated last week
- ☆12Updated last year
- A few examples of how to trap virtual memory access on Windows.☆29Updated 3 months ago
- ☆18Updated 3 months ago
- An In-memory Embedding of CPython☆27Updated 3 years ago
- Evilbytecode-Gate resolves Windows System Service Numbers (SSNs) using two methods: analyzing the Guard CF Table in ntdll.dll and parsing…☆20Updated 2 months ago
- Golang bindings for PE-sieve☆43Updated last year
- powershell script i wrote that can suspend an arbitrary process (with limits)☆20Updated 2 years ago
- A more reliable way of resolving syscall numbers in Windows☆48Updated last year
- Code samples that serve as references for Windows API functions☆30Updated 10 months ago
- ☆23Updated 11 months ago
- ☆17Updated last month
- example using NtCreateUserProcess in rust☆19Updated 2 months ago
- OpenHashAPI provides a secure method of communicating hashes and enables lightweight workflows for security practitioners and enthusiasts…☆14Updated 5 months ago
- ☆18Updated last year
- Sample Rust Hooking Engine☆36Updated last year
- Simple and sane cryptographic wrapper library.☆27Updated last year
- Extension functionality for the NightHawk operator client☆27Updated last year
- A simple Nim stager (w/ fiber execution)☆16Updated 3 years ago
- Mentally ill EtwTi parser☆36Updated 2 weeks ago
- Linux Sleep Obfuscation☆95Updated last year
- Small tool to play with IOCs caused by Imageload events☆42Updated last year
- NimSkrull is an adaption from the original Skrull malware anti-copy DRM. Only for the anti-copy feature. (https://github.com/aaaddress1/S…☆12Updated last year
- Remap ntdll.dll using only NTAPI functions with a suspended process☆17Updated 2 weeks ago
- ☆21Updated 11 months ago
- ☆30Updated 4 months ago
- BOF for C2 framework☆40Updated 5 months ago
- An (WIP) EDR Evasion tool for x64 Windows & Linux binaries that utilizes Nanomites, written in Rust.☆18Updated 4 months ago
- quASAR: ASAR manipulation made easy☆36Updated 2 years ago
- A simple Linux in-memory .so loader☆29Updated 2 years ago