Waterman178's Stars
mike1k/perses
X86 Mutation Engine with Portable Executable compatibility.
danielkrupinski/MemJect
Simple Dll injector loading from memory. Supports PE header and entry point erasure. Written in C99.
horsicq/xntsv
XNTSV program for detailed viewing of system structures for Windows.
MartinDrab/IRPMon
The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracker but has several enhancements. It supports 64-bit versions of Windows (no inline hooks are used, only moodifications to driver object structures are performed) and monitors IRP, FastIo, AddDevice, DriverUnload and StartIo requests.
ez8-co/yapi
💉 全能进程注入器 [Yet Another Process Injector] that reduce differences between x64, wow64 and x86 processes.
kkent030315/anycall
x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration
kindtime/nosferatu
Windows NTLM Authentication Backdoor
hzphreak/VMInjector
DLL Injection tool to unlock guest VMs
Compiled-Code/be-injector
weak1337/BE-Shellcode
Code for Battleyes shellcode
HadesW/mhy_exp
Mhy Exp (exploit signed driver)
capt-meelo/NtCreateUserProcess
Minimal PoC developed as discuss in https://captmeelo.com/redteam/maldev/2022/05/10/ntcreateuserprocess.html
glumb/mrc
MicroPede robot controller 🤖🖥👾
Microwave89/rtsectiontest
An Attempt to Bypass Memory Scanners By Misusing the ntdll.dll "RT" Section.
momo5502/ept-hook-detection
Different aproaches to detecting EPT hooks
EBalloon/MapPage
Mapping your code on a 0x1000 size page
ekknod/KiSystemStartupMeme
Custom KiSystemStartup, can be used to modificate kernel before boot.
Eva1216/MagicWall
weak1337/BEShellcodeDumper
estimated1337/executor
fecurity executor from factory
rtyuiow/vmware-backdoor
vmware-backdoor
glumb/robotDK-MRC-driver
A simple driver to control a MRC based robot with roboDK
polakow/WindowsBypassSMEP
Example for PagedOut!
misslng/boundcallback
AlgoPeek/ReadDirectoryChanges
how to use ReadDirectoryChangesW by IO completion port on windows platform.
muturikaranja/disable-threat-tracing
Disable threat tracing from the kernel..
TheNNX/NNXOS64
A 64 bit OS
Zpes/discord-hook-injector
Zpes/copy-calling
Dark-Guan/mecanumbot-ros-pkg
A ROS package for the Mecanumbot robot.