ret2win / siph0n-rootkitLinks
☆16Updated 5 years ago
Alternatives and similar repositories for siph0n-rootkit
Users that are interested in siph0n-rootkit are comparing it to the libraries listed below
Sorting:
- Cross-platform malware development library for anti-analysis techniques☆24Updated 4 years ago
- AMSI detection PoC☆32Updated 5 years ago
- ☆28Updated 5 years ago
- This tool parses NTDLL.DLL, extracts all the syscall numbers and helps in making direct syscalls, in order to help evasion.☆15Updated 3 years ago
- Malware campaigns and APTs research by BlackArrow☆18Updated 5 years ago
- This is a 64 bit VBA implementation of Christophe Tafani-Dereeper's original VBA code described in his blog @ https://blog.christophetd.f…☆21Updated 5 years ago
- A repository where I share my injection implemintations☆29Updated 5 years ago
- DLL hijacking vulnerability scanner and PE infector tool☆18Updated 7 years ago
- Create a Run registry key with direct system calls. Inspired by @Cneelis's Dumpert and SharpHide.☆77Updated 5 years ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆52Updated 6 years ago
- A Canary which fires when uninstalled☆34Updated 4 years ago
- ☆17Updated 5 years ago
- ☆24Updated 3 years ago
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- ☆45Updated 7 years ago
- Dumping credentials through windbg and pykd☆41Updated last year
- A local LKM rootkit loader/dropper that lists available security mechanisms☆52Updated 3 years ago
- Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the in…☆19Updated 4 years ago
- IBM RedCON 2020 - Throwing an AquaWrench into the Kernel☆44Updated 4 years ago
- Experiments on the Windows Internals☆30Updated 5 years ago
- Playing with PE's and Building Structures by Hand☆22Updated 3 years ago
- (Sim)ulate (Ba)zar Loader☆29Updated 4 years ago
- Python script to patch the reflective stub in a DLL☆24Updated 8 years ago
- Windows GPU rootkit PoC by Team Jellyfish☆36Updated 10 years ago
- Automation Capable Multi Search 64 Bit Windows Memory Scanner☆28Updated 4 years ago
- A PowerShell script to prevent Sysmon from writing its events☆16Updated 5 years ago
- Obfuscates a Python Script and the accompanying Shellcode.☆57Updated 5 years ago
- POC code to crash Windows Event Logger Service☆27Updated 4 years ago
- A Docker container used to easily compile Nim binaries generated by my tools (NimPackt and NimPlant)☆16Updated last year
- Liberating dem proprietary APT implants☆20Updated 5 years ago