sad0p / d0zer
Elf binary infector written in Go.
☆209Updated 4 months ago
Alternatives and similar repositories for d0zer
Users that are interested in d0zer are comparing it to the libraries listed below
Sorting:
- A Simple Linux ELF Runtime Crypter☆249Updated 2 months ago
- Linux Loadable Kernel Module (LKM) based rootkit (ring-0), capable of hiding itself, processes/implants, rmmod proof, has ability to bypa…☆250Updated last year
- ☆302Updated last year
- Injects additional machine instructions into various binary formats.☆279Updated last year
- ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries…☆187Updated last year
- Academic project of Linux rootkit made for Bachelor Engineering Thesis.☆103Updated 9 months ago
- Exploit Development - Weaponized Exploit and Proof of Concepts (PoC)☆222Updated last year
- Kernel Exploits☆252Updated 3 years ago
- Golang PE injection on windows☆167Updated 3 years ago
- Fork of pkg/debug that adds some additional functionality.☆124Updated last year
- bdvl☆113Updated 3 years ago
- LD_PRELOAD rootkit☆132Updated last year
- A command line Windows API tracing tool for Golang binaries.☆156Updated last year
- Linux Kernel module-less implant (backdoor)☆72Updated 4 years ago
- Slides & Hands-on for the reverse engineering workshop☆179Updated 2 years ago
- Proof of concept for injecting simple shellcode via ptrace into a running process.☆69Updated 2 years ago
- The source code files that accompany the short book "Building C2 Implants in C++: A Primer" by Steven Patterson (@shogun_lab).☆229Updated 5 months ago
- x86 malware emulator☆220Updated this week
- Yet another variant of Process Hollowing☆393Updated 3 months ago
- ☆189Updated 2 months ago
- Intercept stdin/stdout/stderr for any process☆198Updated 2 years ago
- A from-scratch rewrite of The Backdoor Factory - a MitM tool for inserting shellcode into all types of binaries on the wire.☆375Updated 3 years ago
- eBPF hacks☆187Updated 5 months ago
- Small tool to run ELF binaries from memory with a given process name☆167Updated 3 years ago
- Proof of concept for CVE-2021-24086, a NULL dereference in tcpip.sys triggered remotely.☆233Updated 4 years ago
- This repo contains write ups of vulnerabilities I've found and exploits I've publicly developed.☆145Updated 2 years ago
- A simple ptrace-less shared library injector for x64 Linux☆259Updated 2 years ago
- Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions☆488Updated 4 years ago
- Stealth dropper executing remote binaries without dropping them on disk .(HTTP3 support, ICMP support, invisible tracks, cross-platform,.…☆198Updated 10 months ago
- Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86…☆130Updated 2 years ago