Simple example for getting started with eBPF for Windows
☆50Feb 23, 2025Updated last year
Alternatives and similar repositories for TraceConnections
Users that are interested in TraceConnections are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Work with eBPF on Windows☆44Feb 26, 2025Updated last year
- A few examples of how to trap virtual memory access on Windows.☆42Dec 18, 2024Updated last year
- VisualStudio port of https://github.com/guervild/BOFs/tree/dev/SilentLsassDump☆24Jul 6, 2023Updated 2 years ago
- A New Exploitation Technique for Visual Studio Projects☆11Nov 5, 2023Updated 2 years ago
- Simple utility to watch directory change notifications on a given path☆20Oct 6, 2017Updated 8 years ago
- Wordpress hosting with auto-scaling on Cloudways • AdFully Managed hosting built for WordPress-powered businesses that need reliable, auto-scalable hosting. Cloudways SafeUpdates now available.
- Updated version of a long known self deletion technique to work with 24H2.☆61Jun 9, 2025Updated 9 months ago
- ☆40May 10, 2025Updated 10 months ago
- Vectored Exception Handling Squared☆31Dec 27, 2025Updated 3 months ago
- A tracker DLL which enables 'NTAPI->Syscall' tracking whenever it is loaded. It calls 'NtSetInformationProcess' API call with a callback …☆14Oct 21, 2024Updated last year
- Unused DLL hollowing PoC in Nim☆17Jan 31, 2022Updated 4 years ago
- A simple Linux in-memory .so loader☆33Mar 29, 2023Updated 3 years ago
- A proof-of-concept shellcode loader that leverages AI/ML face recognition models to verify the identity of a user on a target system☆43Oct 30, 2024Updated last year
- API Set resolver for Windows☆143Sep 11, 2024Updated last year
- ☆42Feb 18, 2025Updated last year
- Wordpress hosting with auto-scaling on Cloudways • AdFully Managed hosting built for WordPress-powered businesses that need reliable, auto-scalable hosting. Cloudways SafeUpdates now available.
- Examples of various container types for Python and Golang☆16Aug 29, 2025Updated 7 months ago
- This is a PoC using native windows API directx, to hide and decrypt shellcode via compute shader☆10May 3, 2025Updated 10 months ago
- ELF Beacon Object File (BOF) Template☆19Nov 18, 2024Updated last year
- MuddyWater C2 framework research☆12Jun 28, 2023Updated 2 years ago
- Trace events in real time sessions☆47Aug 25, 2023Updated 2 years ago
- A simple way to spoof return addresses using an exception handler☆44Aug 3, 2022Updated 3 years ago
- A set of programs for analyzing common vulnerabilities in COM☆249Sep 8, 2024Updated last year
- Proof-of-concept modular implant platform leveraging v8☆54Mar 4, 2025Updated last year
- Enum and Remove Hook in Windows☆52Dec 11, 2025Updated 3 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆81Sep 18, 2022Updated 3 years ago
- A simple BOF that disables some logging with NtSetInformationProcess☆14Oct 13, 2023Updated 2 years ago
- Windows kernel driver that detects hypervisors by probing SIDT/LIDT edge cases, paging/TLB behaviors, privilege transitions, and timing e…☆41Mar 3, 2026Updated 3 weeks ago
- rust clr heap encryption (https://github.com/lap1nou/CLR_Heap_encryption), but no heap encryption.☆17Jan 6, 2024Updated 2 years ago
- Port of Mandiant ShellcodeHashes plugin from IDA to BinaryNinja☆11Jul 24, 2024Updated last year
- Mentally ill EtwTi parser☆69Jan 11, 2026Updated 2 months ago
- Mimikatz embedded as classes☆28Oct 25, 2021Updated 4 years ago
- PE Viewer☆213Jan 24, 2026Updated 2 months ago
- Compileable POC of namazso's x64 return address spoofer.☆50Jun 10, 2020Updated 5 years ago
- Wordpress hosting with auto-scaling on Cloudways • AdFully Managed hosting built for WordPress-powered businesses that need reliable, auto-scalable hosting. Cloudways SafeUpdates now available.
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆172Feb 10, 2026Updated last month
- A C++/Asm template for PIC/EXE/DLL malware☆24Aug 12, 2025Updated 7 months ago
- ☆18Mar 1, 2021Updated 5 years ago
- IDA Plugin exports all pseudocode at once for easy search and analysis☆23Jan 27, 2026Updated 2 months ago
- BOF and C++ implementation of the Windows Defender sandboxing technique described by Elastic Security Labs/Gabriel Landau.☆24Jul 5, 2023Updated 2 years ago
- ☆59Oct 24, 2024Updated last year
- ☆22Sep 15, 2022Updated 3 years ago