timwhitez / memmod
Fork & modify of Wireguard's Memmod
☆32Updated last year
Alternatives and similar repositories for memmod:
Users that are interested in memmod are comparing it to the libraries listed below
- Golang implementation of Hellsgate + Halosgate/Tartarosgate. Ensures that all systemcalls go through ntdll.dll;☆32Updated 3 years ago
- desktop screenshot☆29Updated last year
- ☆30Updated 2 years ago
- query specific user and login IP from remote machine☆17Updated 2 years ago
- ☆12Updated 2 years ago
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆43Updated 2 years ago
- Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray☆45Updated 2 years ago
- ☆22Updated last year
- Code with Windows Hacker☆13Updated 2 years ago
- ☆40Updated last year
- ☆19Updated 2 years ago
- Load CLR to get RWX 通过加载clr在自身内存中产生rwx空间☆22Updated 2 years ago
- dump lsass tool☆39Updated 2 years ago
- CIA UAC bypass implementation that utilizes elevated COM object to write to System32 and an auto-elevated process to execute as administr…☆14Updated last year
- BOF/COFF obj file to PIC(shellcode). by golang☆37Updated 2 years ago
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dll☆43Updated 3 years ago
- BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel☆21Updated 10 months ago
- dump lsass☆37Updated 2 years ago
- ☆45Updated 9 months ago
- Learning notes of amazing Sliver C2 project.☆25Updated 2 years ago
- CVE-2021-42287/CVE-2021-42278 exploits in powershell☆37Updated 3 years ago
- Its a coff loader ported to go( Modified by TimWhite )☆26Updated last year
- Stop Windows Defender programmatically☆15Updated 3 years ago
- Load ssp dll golang implementation☆19Updated 3 years ago
- DiagTrack Eop (From Service Account to SYSTEM)☆22Updated 2 years ago
- Cs-Sleep-Mask-Fiber☆17Updated 6 months ago
- Golang implement winrm client with pass the hash☆31Updated 11 months ago
- load assembly executable file in memory☆40Updated last year
- resource-based constrained delegation RBCD☆44Updated 3 years ago
- golang implementation of Syswhisper2/Syswhisper3☆23Updated 3 years ago