xrw67 / bootkitLinks
Linux BootKit
☆32Updated 8 years ago
Alternatives and similar repositories for bootkit
Users that are interested in bootkit are comparing it to the libraries listed below
Sorting:
- Reflective SO injection is a library injection technique in which the concept of reflective programming is employed to perform the loadin…☆118Updated 9 years ago
- Obfuscates dynamic symbol table☆136Updated 6 years ago
- Simple library to spray the Windows Kernel Pool☆110Updated 5 years ago
- Windbg2ida lets you dump each step in Windbg then shows these steps in IDA☆74Updated last year
- kernel pool windbg extension☆84Updated 10 years ago
- ELF packer - x86_64☆73Updated 10 years ago
- This is a place to share my miscellaneous projects.☆115Updated 5 years ago
- ELF Shared library injector using DT_NEEDED precedence infection. Acts as a permanent LD_PRELOAD☆111Updated 5 years ago
- Poc for ELF64 runtime infection via GOT poisoning technique by elfmaster☆30Updated 5 years ago
- ☆50Updated 8 years ago
- Matryoshka - stacked LKM loader☆54Updated 2 years ago
- Polymorphic VM and PoliCTF '17 reversing challenge.☆73Updated last year
- A fast execution trace symbolizer for Windows.☆129Updated last year
- SentinelOne's KeRnel Exploits Advanced Mitigations☆54Updated 7 years ago
- Windows NT ioctl bruteforcer and modular fuzzer☆125Updated 6 years ago
- Simple Polymorphic x86_64 Runtime Code Segment Cryptor☆59Updated 7 years ago
- Helper idapython code for reversing kmdf drivers☆74Updated 3 years ago
- Static unpacker for FinSpy VM☆103Updated 4 years ago
- This is a simple driver with x64 inline assembly☆57Updated 5 years ago
- POC viruses I have created to demo some ideas☆59Updated 5 years ago
- A Fuzzer for Windows NDIS Drivers OID Handlers☆95Updated 4 years ago
- Elevation of privilege detector based on HyperPlatform☆123Updated 8 years ago
- Changing memory protection in an arbitrary process☆47Updated 7 years ago
- x64dbg plugin to check security settings☆138Updated 8 years ago
- Collection of simple anti-debugging tricks for Linux☆59Updated 7 years ago
- Exploits for the win32kfull!bFill vulnerability on Win10 x64 RS2 using Bitmap or Palette techniques☆54Updated 8 years ago
- IDA script for vmprotect Windows Api address decoder☆52Updated 4 years ago
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE).☆118Updated 7 years ago
- IDA Pro plugin that changes color of call instructions and works with all architectures☆59Updated 7 years ago
- sample linux x86_64 ELF virus☆53Updated 7 years ago