Lists (4)
Sort Name ascending (A-Z)
Stars
TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.
A little tool to play with Windows security
Capturing SSL/TLS plaintext without a CA certificate using eBPF. Supported on Linux/Android kernels for amd64/arm64.
The Minimalistic x86/x64 API Hooking Library for Windows
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
eBPF implementation that runs on top of Windows
Transparently tunnel your IP traffic through ICMP echo and reply packets.
Vmware Hardened VM detection mitigation loader (anti anti-vm)
Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.
🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc
A little toolbox to play with Microsoft Kerberos in C
A memory-based evasion technique which makes shellcode invisible from process start to end.
Original C Implementation of the Hell's Gate VX Technique
Another Windows Local Privilege Escalation from Service Account to System
Hide a process under Linux using the ld preloader (https://sysdig.com/blog/hiding-linux-processes-for-fun-and-profit/)
Linux rootkit for Ubuntu 16.04 and 10.04 (Linux Kernels 4.4.0 and 2.6.32), both i386 and amd64
Hiding the window from screenshots using the function win32kfull::GreProtectSpriteContent
Cobalt Strike HTTPS beaconing over Microsoft Graph API