sandflysecurity / sandfly-processdecloakLinks
Sandfly Linux Stealth Rootkit Decloaking Utility
☆101Updated 2 years ago
Alternatives and similar repositories for sandfly-processdecloak
Users that are interested in sandfly-processdecloak are comparing it to the libraries listed below
Sorting:
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆59Updated 3 years ago
- Proxy Unix applications in the terminal☆114Updated 4 years ago
- bdvl☆114Updated 3 years ago
- Binary to shellcode from an object/executable format 32 & 64-bit PE , ELF☆74Updated 4 years ago
- A collection of scripts for dealing with Cobalt Strike beacons in Python☆168Updated 4 years ago
- Ingest openldap data into bloodhound☆81Updated 4 years ago
- Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.☆228Updated 5 years ago
- Paracosme is a zero-click remote memory corruption exploit that compromises ICONICS Genesis64 which was demonstrated successfully on stag…☆89Updated last year
- Yapscan is a YAra based Process SCANner, aimed at giving more control about what to scan and giving detailed reports on matches.☆61Updated 2 years ago
- Mara is a userland pty/tty sniffer☆53Updated last year
- A local LKM rootkit loader/dropper that lists available security mechanisms☆52Updated 3 years ago
- Proof of concept for injecting simple shellcode via ptrace into a running process.☆72Updated 2 years ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆69Updated 3 years ago
- A small utility to deal with malware embedded hashes.☆52Updated last year
- YARI is an interactive debugger for YARA Language.☆88Updated last month
- ☆67Updated 2 years ago
- Imphash-like calculation on Golang binaries☆49Updated 3 years ago
- Unpacking and decryption tools for the Emotet malware☆45Updated 3 years ago
- Raw socket library/framework for red team events☆34Updated 2 years ago
- Execute MachO binaries in memory using CGo☆81Updated 4 years ago
- Golang PE injection on windows☆167Updated 4 years ago
- volatility explorer☆91Updated 4 years ago
- pypykatz plugin for volatility3 framework☆41Updated 2 months ago
- ☆63Updated last year
- A cross-platform C2/teamserver supporting multiple transport protocols, written in Go.☆45Updated 2 years ago
- Sentello is python script that simulates the anti-evasion and anti-analysis techniques used by malware.☆73Updated 4 years ago
- A ptrace POC by hooking SSH to reveal provided passwords☆185Updated 8 years ago
- ELF Sectional docking payload injector system☆21Updated 3 years ago
- ☆80Updated 3 years ago
- A Netcat-style backdoor for pentesting and pentest exercises☆51Updated 4 years ago