zimnyaa / nim-noload-dll-hollowingLinks
Unused DLL hollowing PoC in Nim
☆17Updated 3 years ago
Alternatives and similar repositories for nim-noload-dll-hollowing
Users that are interested in nim-noload-dll-hollowing are comparing it to the libraries listed below
Sorting:
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated 2 years ago
- Sleep Obfuscation☆45Updated 3 years ago
- A simple Nim stager (w/ fiber execution)☆19Updated 3 years ago
- PoC XLL builder in Python/Nim☆48Updated 3 years ago
- Small tool to play with IOCs caused by Imageload events☆44Updated 2 years ago
- Windows x64 Process Injection via Ghostwriting with Dynamic Configuration☆29Updated 4 years ago
- ☆44Updated 2 years ago
- Beacon Object Files (not Buffer Overflows)☆58Updated 2 years ago
- A method to execute shellcode using RegisterWaitForInputIdle API.☆55Updated 2 years ago
- Your NTDLL vaccine from modern direct syscall methods.☆36Updated 3 years ago
- Halos Gate-based NTAPI Unhooker☆52Updated 3 years ago
- ☆62Updated 3 years ago
- The Web UI for Antnium☆27Updated 3 years ago
- all credits go to @mgeeky☆64Updated 4 years ago
- Utilizing hardware breakpoints to evade monitoring by Endpoint Detection and Response platforms☆133Updated 3 years ago
- ☆43Updated 3 years ago
- ☆42Updated 4 years ago
- ShellcodeFluctuation PoC ported to Nim☆79Updated 3 years ago
- Cobalt Strike Beacon Object File to enable the webdav client service on x64 windows hosts☆23Updated 2 years ago
- ☆37Updated 2 years ago
- A tracker DLL which enables 'NTAPI->Syscall' tracking whenever it is loaded. It calls 'NtSetInformationProcess' API call with a callback …☆13Updated last year
- Run python from a single exe☆35Updated 3 years ago
- This project is an EDRSandblast fork, adding some features and custom pieces of code.☆25Updated 2 years ago
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆89Updated 3 years ago
- An Aggressor Script that utilizes NtCreateUserProcess to run binaries☆30Updated 11 months ago
- Golang Implementation of Hell's gate☆21Updated 2 years ago
- DLL proxy load example using the Windows thread pool API, I/O completion callback with named pipes, and C++/assembly☆63Updated last year
- Self Delete DLL☆23Updated last year
- Experimental PoC for unhooking API functions using in-memory patching, without VirtualProtect, for one specific EDR.☆41Updated 2 years ago
- A nim port of C5pider's Ekko project.☆17Updated 3 years ago