☆138Aug 2, 2022Updated 4 years ago
Alternatives and similar repositories for RunAsWinTcb
Users that are interested in RunAsWinTcb are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆88Jul 31, 2022Updated 4 years ago
- A simple PoC to invoke an encrypted shellcode by using an hidden call☆114Nov 19, 2022Updated 3 years ago
- A small PoC that creates processes in Windows☆190Jun 6, 2024Updated 2 years ago
- Protected Process Dumper Tool☆601Aug 30, 2023Updated 3 years ago
- UAC bypass by abusing RPC and debug objects.☆629Oct 19, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC☆375May 24, 2022Updated 4 years ago
- ☆117Aug 7, 2022Updated 4 years ago
- Beacon Object File Loader☆292Dec 3, 2023Updated 2 years ago
- In-memory token vault BOF for Cobalt Strike☆149Aug 18, 2022Updated 4 years ago
- ☆564Feb 22, 2024Updated 2 years ago
- A PoC tool for exploiting leaked process and thread handles☆36Feb 13, 2024Updated 2 years ago
- How to spoof the command line when spawning a new process from C#.☆111Dec 28, 2021Updated 4 years ago
- Killing your preferred antimalware by abusing native symbolic links and NT paths.☆361Jan 29, 2022Updated 4 years ago
- Dump the memory of a PPL with a userland exploit☆889Jul 24, 2022Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- BOF combination of KillDefender and Backstab☆170Mar 23, 2023Updated 3 years ago
- DLL Exports Extraction BOF with optional NTFS transactions.☆93Nov 5, 2021Updated 4 years ago
- TartarusGate, Bypassing EDRs☆677Jan 25, 2022Updated 4 years ago
- ☆382Jan 19, 2023Updated 3 years ago
- C# porting of SysWhispers2. It uses SharpASM to find the code caves for executing the system call stub.☆111Apr 14, 2023Updated 3 years ago
- A PoC implementation for an evasion technique to terminate the current thread and restore it before resuming execution, while implementin…☆541Aug 1, 2022Updated 4 years ago
- Tool to bypass LSA Protection (aka Protected Process Light)☆995Dec 4, 2022Updated 3 years ago
- My personal shellcode loader☆32Mar 9, 2023Updated 3 years ago
- collection of apis used in malware development☆231Aug 2, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- DLL proxy load example using the Windows thread pool API, I/O completion callback with named pipes, and C++/assembly☆66Mar 19, 2024Updated 2 years ago
- Cobalt Strike UDRL for memory scanner evasion.☆1,032Jun 4, 2024Updated 2 years ago
- A Poc on blocking Procmon from monitoring network events☆112Aug 7, 2025Updated last year
- ☆52Nov 11, 2021Updated 4 years ago
- ☆163Dec 30, 2022Updated 3 years ago
- ☆1,846Aug 30, 2024Updated 2 years ago
- ☆130Oct 14, 2022Updated 3 years ago
- A small NtCreateUserProcess PoC that spawns a Command prompt.☆105Apr 11, 2026Updated 5 months ago
- A collection of various and sundry code snippets that leverage .NET dynamic tradecraft☆145May 18, 2024Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Some source code to demonstrate avoiding certain direct syscall detections by locating and JMPing to a legitimate syscall instruction wit…☆218Feb 20, 2023Updated 3 years ago
- It's pointy and it hurts!☆126Oct 18, 2022Updated 3 years ago
- PoC for a sleep obfuscation technique leveraging waitable timers to evade memory scanners.☆627Sep 26, 2023Updated 2 years ago
- Files for http://blog.deniable.org/posts/windows-callbacks/☆85Feb 26, 2022Updated 4 years ago
- Beacon Object File implementation of Event Viewer deserialization UAC bypass☆132May 6, 2022Updated 4 years ago
- You shall pass☆271Jul 16, 2022Updated 4 years ago
- Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.☆244Sep 26, 2023Updated 2 years ago