rek7 / ddoor
DDoor - cross platform backdoor using dns txt records
☆29Updated 3 years ago
Alternatives and similar repositories for ddoor:
Users that are interested in ddoor are comparing it to the libraries listed below
- Executes shellcode from a remote server and aims to evade in-memory scanners☆31Updated 5 years ago
- CSharp Writeups for HackSys Extreme Vulnerable Driver☆43Updated 3 years ago
- Injects shellcode into remote processes using direct syscalls☆74Updated 4 years ago
- A crappy hook on SpAcceptLsaModeContext that prints incoming auth attempts. WIP☆33Updated 3 years ago
- Offensive RPC PoC☆84Updated 3 years ago
- Bypass UAC by abusing the Windows Defender Firewall Control Panel, environment variables, and shell protocol handlers☆17Updated 3 years ago
- Cross-platform malware development library for anti-analysis techniques☆24Updated 3 years ago
- (Sim)ulate (Ba)zar Loader☆29Updated 4 years ago
- A quick tool for hiding a new process running shellcode.☆56Updated 4 years ago
- A PoC tool for exploiting leaked process and thread handles☆30Updated 11 months ago
- Injects position-dependent code into a code cave in an executable file, and applies relocations.☆23Updated last year
- A small commented POC for removing API hooks placed by AV/EDR.☆33Updated 4 years ago
- ☆49Updated 2 years ago
- Upsilon execute shellcode with syscalls - no API like NtProtectVirtualMemory is used☆92Updated 3 years ago
- C code to enable ETW tracing for Dotnet Assemblies☆30Updated 2 years ago
- ☆31Updated 4 years ago
- all credits go to @mgeeky☆59Updated 3 years ago
- A simple injector that uses LoadLibraryA☆17Updated 4 years ago
- x86 and x86-64 shellcodes for Windows, Mac OSX, Linux, BSD and Solaris☆15Updated 7 years ago
- Bypass UAC elevation on Windows 8 (build 9600) & above.☆54Updated 2 years ago
- improving zerosums smbdoor - a silent remote backdoor which abuses undoc. APIs in srvnet.sys☆49Updated last year
- Files for http://deniable.org/windows/windows-callbacks☆24Updated 4 years ago
- ☆15Updated 4 years ago
- Windows NTLM Authentication Backdoor☆14Updated 3 years ago
- C++ implementation of DOUBLEPULSAR usermode shellcode. Yet another Reflective DLL loader.☆29Updated 3 years ago
- PoC for DEF CON 26: Playing Malware Injection with Exploit thoughts☆23Updated 6 years ago
- UAC bypass abusing WinSxS in "wusa.exe". Referred from and similar to: https://github.com/L3cr0f/DccwBypassUAC , Kudos to L3cr0f and Fuz…☆33Updated 3 years ago
- Collection of shellcode injection and execution techniques☆16Updated 3 years ago
- ☆26Updated 3 years ago
- ollvm, based on llvm-clang 5.0.2, 6.0.1, 7.0.1, 8.0, 9.0, 9.0.1☆18Updated 2 years ago