yoavshah / ImportlessApi
☆18Updated last year
Alternatives and similar repositories for ImportlessApi:
Users that are interested in ImportlessApi are comparing it to the libraries listed below
- ☆18Updated last month
- A simple Linux in-memory .so loader☆29Updated last year
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago
- An example of COM hijacking using a proxy DLL.☆26Updated 3 years ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆26Updated last year
- Hooked create process injection for meterpreter☆23Updated 3 years ago
- Your NTDLL vaccine from modern direct syscall methods.☆35Updated 2 years ago
- ☆27Updated last year
- A simple Nim stager (w/ fiber execution)☆16Updated 3 years ago
- Just another Process Injection using Process Hollowing technique.☆16Updated last year
- Read ETW Provider events. Inspired by ETWExplorer by Pavel Yosifovich☆14Updated 7 months ago
- Small tool to play with IOCs caused by Imageload events☆42Updated last year
- Simple and sane cryptographic wrapper library.☆26Updated last year
- ☆23Updated 9 months ago
- ☆23Updated 2 weeks ago
- powershell script i wrote that can suspend an arbitrary process (with limits)☆20Updated last year
- Sample Rust Hooking Engine☆35Updated 10 months ago
- ☆47Updated last year
- really ?☆12Updated 11 months ago
- ☆47Updated 3 years ago
- A C implementation of the Sektor7 "A Thief" Windows privesc technique.☆61Updated 2 years ago
- A lexer and parser for Sleep☆16Updated 3 weeks ago
- ☆12Updated last year
- A pure C version of SymProcAddress☆25Updated 10 months ago
- A small example of loading BOFs in Python with pure reflection☆18Updated 2 years ago
- DoublePulsar (Position-Independent) Shellcode (Windows 7 SP1 x64)☆26Updated 4 years ago
- A simple PE loader.☆25Updated 2 years ago
- Former Multi - Ring to Kernel To UserMode Transitional Shellcode For Remote Kernel Exploits☆27Updated 2 years ago
- Load and execute a common object file format (COFF) in the current process☆26Updated 11 months ago