thecatenjoyer / singlestep_xorstubLinks
Stub for polymorphic code
☆12Updated 2 years ago
Alternatives and similar repositories for singlestep_xorstub
Users that are interested in singlestep_xorstub are comparing it to the libraries listed below
Sorting:
- havoc kaine plugin to mitigate PAGE_GUARD protected image headers using JOP gadgets☆31Updated 11 months ago
- ☆17Updated 4 years ago
- call gates as stable comunication channel for NT x86 and Linux x86_64☆32Updated last year
- ☆9Updated 10 months ago
- A few examples of how to trap virtual memory access on Windows.☆31Updated 6 months ago
- ☆31Updated 4 months ago
- Proof of Concept example for abusing Process Hacker 2 (v2.39.124)☆22Updated 8 months ago
- Native Powers Talk demos☆14Updated last year
- API Hammering with C++20☆49Updated 2 years ago
- ☆48Updated 3 months ago
- Michelangelo REanimator bootkit and REcon 2023 talk slides/materials☆30Updated last year
- ☆30Updated 7 months ago
- rust clr heap encryption (https://github.com/lap1nou/CLR_Heap_encryption), but no heap encryption.☆16Updated last year
- Experimental PoC for unhooking API functions using in-memory patching, without VirtualProtect, for one specific EDR.☆14Updated 2 years ago
- "An Introduction to Windows Exploit Development" is an open sourced, free Windows exploit development course I created for the Southeast …☆39Updated 5 years ago
- Intel 64/Windows low-level experiments☆55Updated this week
- A more reliable way of resolving syscall numbers in Windows☆51Updated last year
- Progress of learning kernel development☆14Updated 2 years ago
- This repo for Windows x32-x64 Kernel/Driver/User Mode Exploitation writeups and exploits☆25Updated last year
- Callstack spoofing using a VEH because VEH all the things.☆22Updated 3 months ago
- ☆57Updated 2 months ago
- A Payload Analysis Framework☆30Updated 2 weeks ago
- the Open Source and Pure C++ Packer for eXecutables☆21Updated 2 years ago
- Persistence techniques for windows.☆19Updated 2 years ago
- ☆31Updated 3 months ago
- ☆31Updated last year
- How to set up 2 VirtualBox VM to debug kernel driver using windbg☆54Updated 3 years ago
- Offensive Assembly code snippets.☆12Updated 2 years ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆26Updated last year
- Slides for COM Hijacking AV/EDR Talk on 38c3☆74Updated 6 months ago