zeroSteiner / reflective-polymorphism
Reflective Polymorphism
☆104Updated 6 years ago
Related projects ⓘ
Alternatives and complementary repositories for reflective-polymorphism
- Advanced Portable Executable File Analyzer And Disassembler 32 & 64 Bit☆99Updated 5 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆133Updated 7 years ago
- Some sample code from my Zero Nights 2017 presentation.☆62Updated 7 years ago
- Another Repo of Malware. Enjoy. <3☆60Updated 5 years ago
- PoC for persisting .NET payloads in Windows Notification Facility (WNF) state names using low-level Windows Kernel API calls.☆147Updated 5 years ago
- Simple tool to automate adding shellcode to PE files☆50Updated 6 years ago
- ☆51Updated 7 years ago
- Shim database persistence (Fin7 TTP)☆36Updated 4 years ago
- A tool to exploit .NET DCOM for EoP and RCE. Is fixed in latest versions of the .NET.☆87Updated 10 years ago
- ☆32Updated 7 years ago
- Workshop material for a Windows Attack Surface Analysis Workshop☆66Updated 5 years ago
- Tool to make in memory man in the middle☆124Updated 6 years ago
- A tiny PoC to inject and execute code into explorer.exe with WM_SETTEXT+WM_COPYDATA+SetThreadContext☆50Updated 6 years ago
- UAC 0Day all day!☆58Updated 7 years ago
- kernel exploitation helper class☆75Updated 7 years ago
- Tool for injecting a "TCP Relay" managed assembly into unmanaged processes☆116Updated 5 years ago
- A one-click tool to inject jobs into the BITS queue (Background Intelligent Transfer Service), allowing arbitrary program execution as th…☆98Updated 5 years ago
- Bypassing User Account Control (UAC) using TpmInit.exe☆126Updated 8 years ago
- VBS Reversed TCP Meterpreter Stager☆86Updated 7 years ago
- Use bitsadmin to maintain persistence and bypass Autoruns☆66Updated 7 years ago
- MS17-012 - COM Session Moniker EoP Exploit running within MSBuild.exe☆59Updated 7 years ago
- NCC Group's analysis and exploitation of CVE-2017-8759 along with further refinements☆94Updated 7 years ago
- ☆84Updated 8 years ago
- fragments of dirty, and quick code. possible error checking or none.☆25Updated 7 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆85Updated 7 years ago