sysopfb / VM_Timing_Detect
☆12Updated 8 years ago
Alternatives and similar repositories for VM_Timing_Detect:
Users that are interested in VM_Timing_Detect are comparing it to the libraries listed below
- A new binary injection technique, can easily go through any #CIG protected process and slip through all possible defenses without any inj…☆17Updated 6 years ago
- HEVD Multi-Exploit by m_101☆23Updated 6 years ago
- Win32k Elevation of Privilege PocUpdated 5 years ago
- Experimental Windows .text section Patch Detector☆21Updated 10 years ago
- Will try to put here slides from now on when I give a talk☆24Updated 3 years ago
- ☆45Updated 6 years ago
- findLoop - find possible encryption/decryption or compression/decompression code☆26Updated 5 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 6 years ago
- Fuzzing Framework☆10Updated 7 years ago
- PoC for Bypassing UM Hooks By Bruteforcing Intel Syscalls☆39Updated 9 years ago
- PoC Code for CVE-2018-16712 (exploit by MmMapIoSpace)☆25Updated 6 years ago
- Files related to my presentation at SigSegV2 conference in 2019. You can find related papers on my blog☆13Updated 5 years ago
- BlazeFox Exploit☆18Updated 6 years ago
- Simple shellcode injector.☆14Updated 6 years ago
- Making shellcode UD - https://osandamalith.com☆24Updated 8 years ago
- Green shellcode challenge tools☆22Updated 5 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆38Updated 7 years ago
- Auto Inject Dll , it have three method to inject your custom dll. help you to test inject.☆9Updated 8 years ago
- 🐧 A simple kernel-level rootkit☆20Updated 8 years ago
- simple rootkit for computer security class☆14Updated 12 years ago
- ☆13Updated 7 years ago
- Experimental: Windows .text section compare - disk versus memory☆14Updated 10 years ago
- PoC for CVE-2019-0888 - Use-After-Free in Windows ActiveX Data Objects (ADO)☆40Updated 5 years ago
- IDA Pro plugin that rename functions on load, based on functionality☆19Updated 6 years ago
- Kernel mode windows NT API logger☆22Updated 5 years ago
- Run Any Native PE file as a memory ONLY Payload , most likely as a shellcode using hta attack vector which interacts with Powershell.☆27Updated 7 years ago
- Python script to patch the reflective stub in a DLL☆24Updated 7 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 6 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 4 years ago
- A introductory workshop to getting started with fuzzing using american fuzzy lop (AFL)☆22Updated 5 years ago