Code snippets for bare-metal malware development
☆99Feb 19, 2022Updated 4 years ago
Alternatives and similar repositories for BMJ
Users that are interested in BMJ are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Classic Bofa adapted to CobaltStrike.☆11Oct 4, 2022Updated 3 years ago
- ☆695Mar 25, 2025Updated last year
- Find kernel32 base and API addresses. Simple C++ implementation☆24Apr 7, 2022Updated 4 years ago
- Evasive ELF Static PIE User-Land-Exec featured in Tmpout Vol 1.☆30Sep 11, 2021Updated 4 years ago
- Code and notes regarding Malware Development☆11Oct 30, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- various slides and presentations I've worked on☆19Mar 21, 2025Updated last year
- Yet another Linux Rootkit☆16Oct 28, 2021Updated 4 years ago
- SPI flash read MitM attack PoC☆41May 24, 2022Updated 4 years ago
- Malware Development☆10Sep 30, 2020Updated 5 years ago
- A local LKM rootkit loader/dropper that lists available security mechanisms☆54Sep 4, 2021Updated 4 years ago
- ☆20Jan 31, 2022Updated 4 years ago
- One gate to all syscalls!☆23Mar 12, 2022Updated 4 years ago
- improving zerosums smbdoor - a silent remote backdoor which abuses undoc. APIs in srvnet.sys☆49Mar 10, 2023Updated 3 years ago
- A x64 Position Independent Proxy Enumerator Shellcode (PIPES)☆27Nov 14, 2025Updated 8 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Aggressor script that gets the latest commands from CobaltStrikes web site and creates an aggressor script based on tool options.☆23Oct 6, 2021Updated 4 years ago
- Simple Python Elgamal Encryption and Decryption Tool☆10Jan 7, 2020Updated 6 years ago
- Cross-platform malware development library for anti-analysis techniques☆24Jul 27, 2021Updated 4 years ago
- pwntools for go!☆12Jul 14, 2019Updated 7 years ago
- ☆17Mar 25, 2019Updated 7 years ago
- Run payload like a Lazarus Group (UuidFromStringA). C++ implementation☆22Jul 24, 2022Updated 4 years ago
- Proof-of-concept LLVM fork to speculatively inline objc_msgSend☆16Dec 11, 2022Updated 3 years ago
- PoC multi-layer protector for ELF32 x86 binaries☆12Feb 26, 2022Updated 4 years ago
- Protocol Reverse Engineering Resources☆22May 10, 2023Updated 3 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- this is Crytolocket Malware Domain Generation Algorithm (DGA). Cryptolocker uses DGA to generate 1000 to 10000 unique domain names for it…☆14Sep 5, 2016Updated 9 years ago
- Эксплойт для уязвимости CVE-2024-0039 на Android, который позволяет выполнять произвольный код через MP4 файл. Этот репозиторий создан дл…☆12May 29, 2024Updated 2 years ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆39May 19, 2021Updated 5 years ago
- An unsorted collection of little tools and scripts I've made that don't fit anywhere else☆19Jul 15, 2022Updated 4 years ago
- A Modular MWDB Utility to Collect Fresh Malware Samples☆34May 17, 2021Updated 5 years ago
- ELF Shared library injector using DT_NEEDED precedence infection. Acts as a permanent LD_PRELOAD☆111Apr 8, 2020Updated 6 years ago
- yet another hidden LKM hunter☆31Sep 18, 2025Updated 10 months ago
- It's what all the kids are talking about☆12Apr 25, 2023Updated 3 years ago
- F5 BIG-IP 任意文件读取+远程命令执行RCE☆13Jul 8, 2020Updated 6 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- ☆29Aug 10, 2019Updated 6 years ago
- An example of hijacking the dynamic linker with a custom interpreter who loads and executes modular viruses☆66Feb 24, 2022Updated 4 years ago
- Desktop shortcuts (.desktop) create a risk for code execution via social engineering☆11Feb 6, 2017Updated 9 years ago
- Injects additional machine instructions into various binary formats.☆291Feb 3, 2024Updated 2 years ago
- Collection of source code for Polymorphic, Metamorphic, and Permutation Engines used in Malware☆33Oct 28, 2019Updated 6 years ago
- Uses WMI Event Win32_ModuleLoadTrace to monitor module loading. Provides filters, and detailed data. Has an option to monitor for CLR Inj…☆42May 9, 2019Updated 7 years ago
- Cobalt Strike DNS beacon parser☆11Nov 29, 2021Updated 4 years ago