stavinski / winhookLinks
Go library to allow native inline hooking in windows at runtime
☆14Updated last year
Alternatives and similar repositories for winhook
Users that are interested in winhook are comparing it to the libraries listed below
Sorting:
- My nim learning experiments☆11Updated 2 years ago
- Shellcode reflective DLL injection in Rust☆19Updated last year
- ☆12Updated 2 years ago
- Golang Implementation of Hell's gate☆17Updated 2 years ago
- A proof-of-concept created for academic/learning purposes, demonstrating both local and remote use of VSTO "Add-In's" maliciously☆31Updated 2 years ago
- A simple reverse ssh/proxy implant PoC for *nix systems.☆54Updated 11 months ago
- Load and execute a common object file format (COFF) in the current process☆29Updated last year
- BYOVD collection☆23Updated last year
- ☆18Updated 7 months ago
- A little implant which SSH's back with a shell☆38Updated 3 years ago
- A third-party Gopher Assassin for the Havoc Framework.☆44Updated last year
- Dump Linux keyrings☆19Updated 10 months ago
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆39Updated last year
- ☆36Updated last year
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- ☆17Updated 7 months ago
- Windows File Enumeration Intel Gathering Tool.☆17Updated last year
- ADSI based SA tool☆17Updated 3 years ago
- Executes shellcode from a remote server and aims to evade in-memory scanners☆31Updated 5 years ago
- Exfiltrate files using the HTTP protocol version ("HTTP/1.0" is a 0 and "HTTP/1.1" is a 1)☆23Updated 3 years ago
- PoC for detecting and evading ETW detection of .Net Assembly.Load☆20Updated 4 years ago
- Sleep Obfuscation☆45Updated 2 years ago
- OSED Practice binary☆24Updated last year
- A simple Linux in-memory .so loader☆30Updated 2 years ago
- Beacon Object Files used for Cobalt Strike☆19Updated last year
- A shellcode runner / injector / hollower in Go, for windows☆26Updated 3 years ago
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆32Updated last year
- Creation and removal of Defender path exclusions and exceptions in C#.☆31Updated last year
- A PoC~ish of https://elastic.github.io/security-research/malware/2022/01/01.operation-bleeding-bear/article/☆31Updated last year
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago