vineetgaurav / WIN_JELLYLinks
Windows GPU rootkit PoC by Team Jellyfish
☆35Updated 10 years ago
Alternatives and similar repositories for WIN_JELLY
Users that are interested in WIN_JELLY are comparing it to the libraries listed below
Sorting:
- ☆31Updated 4 years ago
- NT AUTHORITY\SYSTEM☆39Updated 4 years ago
- Remote PE reflective injection with a simple reflective loader☆31Updated 5 years ago
- Parser for a custom executable format from Hidden Bee malware (first stage)☆43Updated 8 months ago
- ☆22Updated 4 years ago
- Example for PagedOut!☆24Updated 5 years ago
- Sysmon shenanigans☆65Updated 4 years ago
- ☆16Updated 4 years ago
- Clone running process with ZwCreateProcess☆57Updated 4 years ago
- ☆24Updated 3 years ago
- ☆15Updated 4 years ago
- really ?☆12Updated last year
- Bypass UAC by abusing the Security Center CPL and hijacking a shell protocol handler☆29Updated 3 years ago
- ☆21Updated 4 years ago
- ☆12Updated 4 years ago
- Recreating and reviewing the Windows persistence methods☆38Updated 3 years ago
- Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.☆15Updated 6 years ago
- Process Hollowing demonstration & explanation☆35Updated 4 years ago
- "An Introduction to Windows Exploit Development" is an open sourced, free Windows exploit development course I created for the Southeast …☆39Updated 5 years ago
- Six cases demonstrating methods of optimizing GetProcAddress☆17Updated 3 years ago
- A kernel mode Windows rootkit in development.☆48Updated 3 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 7 years ago
- Former Multi - Ring to Kernel To UserMode Transitional Shellcode For Remote Kernel Exploits☆29Updated 2 years ago
- CSharp Writeups for HackSys Extreme Vulnerable Driver☆43Updated 3 years ago
- A Practical example of ELAM (Early Launch Anti-Malware)☆33Updated 3 years ago
- A PoC tool for exploiting leaked process and thread handles☆31Updated last year
- A repository filled with ideas to break/detect direct syscall techniques☆27Updated 3 years ago
- Another Portable Executable files analysing stuff☆21Updated 14 years ago
- A simple PE loader.☆26Updated 2 years ago
- A multi-staged malware that contains a kernel mode rootkit and a remote system shell.☆71Updated 4 years ago