susMdT / clr-thing
rust clr heap encryption (https://github.com/lap1nou/CLR_Heap_encryption), but no heap encryption.
☆12Updated 10 months ago
Related projects ⓘ
Alternatives and complementary repositories for clr-thing
- A work in progress BOF/COFF loader in Rust☆45Updated last year
- Windows RPC example calling stubs generated from MS-LSAT and MS-LSAD☆24Updated 10 months ago
- ☆27Updated 4 months ago
- Dynamically resolve API function addresses at runtime in a secure manner.☆45Updated last month
- convert compatible dlls to shellcode with sRDI. I don't remember where this came from, so if you recognize the code, let me know and I'll…☆12Updated 7 months ago
- ☆21Updated 6 months ago
- Beacon Debugger☆36Updated 3 weeks ago
- ☆48Updated last year
- A Dynamic MSBuild task to help with minor obfuscation of C# Binaries to evade static signatures on each compilation☆31Updated 8 months ago
- ☆19Updated 5 months ago
- Load a dynamic library from memory using a fuse mount☆29Updated last year
- Early cascade injection PoC based on Outflanks blog post written in Rust☆20Updated last week
- A fast method to intercept syscalls from any user-mode process using InstrumentationCallback and detect any process using Instrumentation…☆22Updated last year
- Exploiting the KsecDD Windows driver through Server Silos☆24Updated last week
- Dangling COM Keys Finder☆14Updated 3 years ago
- Giga-byte Control Center (GCC) is a software package designed for improved user experience of Gigabyte hardware, often found in gaming an…☆30Updated last year
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated last year
- A (quite) simple steganography algorithm to hide shellcodes within bitmap image.☆21Updated 6 months ago
- ☆38Updated last year
- idk man this was the default github name☆35Updated last year
- Your NTDLL vaccine from modern direct syscall methods.☆35Updated 2 years ago
- Sliver agent rewritten in C++☆39Updated 2 months ago
- ☆26Updated 2 years ago
- Artemis - C++ Hell's Gate Syscall Implementation☆30Updated last year
- Simple PoC to locate hooked functions by EDR in ntdll.dll☆32Updated last year
- A way to extract tickets in case I need to purge and restore tickets on the fly.☆17Updated 7 months ago
- BYOVD collection☆20Updated 8 months ago
- A PoC tool for exploiting leaked process and thread handles☆30Updated 9 months ago