x64dbg / monaLinks
Fork of mona.py with x64dbg support
☆108Updated 3 years ago
Alternatives and similar repositories for mona
Users that are interested in mona are comparing it to the libraries listed below
Sorting:
- Tool to make in memory man in the middle☆125Updated 7 years ago
- A killer reverse-shell script that is able to use a lot of techniques to ensure your shell will pop back to you.☆29Updated 7 years ago
- Search for code cave in all binaries☆285Updated last month
- Python solutions for the HackSysTeam Extreme Vulnerable Driver☆152Updated 4 years ago
- Cminer is a tool for enumerating the code caves in PE files.☆154Updated 2 years ago
- Miscellaneous tools written in Python, mostly centered around shellcodes.☆147Updated 10 years ago
- Collection of things made during my preparation to take on OSEE☆101Updated 6 years ago
- Another Repo of Malware. Enjoy. <3☆59Updated 6 years ago
- DC25 5A1F - Demystifying Windows Kernel Exploitation by Abusing GDI Objects☆146Updated 8 years ago
- Pazuzu: Reflective DLL to run binaries from memory☆216Updated 5 years ago
- Platform independent peCloak fork based on Capstone☆107Updated 9 years ago
- Teaching old shellcode new tricks☆207Updated 8 years ago
- Exploits for CVE-2017-6008, a kernel pool buffer overflow leading to privilege escalation.☆118Updated last year
- ☆235Updated 8 years ago
- Reflective Polymorphism☆108Updated 7 years ago
- A tool to exploit .NET DCOM for EoP and RCE. Is fixed in latest versions of the .NET.☆92Updated 11 years ago
- IDAPython script to check ELF & PE/COFF for MS SDL banned.h policy violations and set breakpoints.☆36Updated last year
- A repository of some of my Windows 10 Device Guard Bypasses☆139Updated 8 years ago
- ☆142Updated 8 years ago
- Workshop material for a Windows Attack Surface Analysis Workshop☆68Updated 6 years ago
- x86-64 Windows shellcode that recreates the Jurassic Park hacking scene (Ah, ah, ah... you didn't' say the magic word!)☆84Updated 5 years ago
- FLARE Kernel Shellcode Loader☆178Updated 6 years ago
- Just a normal flask web app to understand win32api with code snippets and references.☆75Updated 5 years ago
- ☆116Updated 9 years ago
- Exploit code used for the HackSysExtremeVulnerableDriver.☆43Updated 7 years ago
- Sandbox escape using WinHTTP Web Proxy Auto-Discovery Service☆86Updated 6 years ago
- PoC for persisting .NET payloads in Windows Notification Facility (WNF) state names using low-level Windows Kernel API calls.☆152Updated 6 years ago
- some pocs for antivirus evasion☆131Updated 2 years ago
- Tool written in python3 to determine where the AV signature is located in a binary/payload☆313Updated 7 years ago
- Zerokit/GAPZ rootkit (non buildable and only for researching)☆184Updated 6 years ago