Ecosyste.ms sponsors
An open API service aggregating public data about GitHub Sponsors.
An open API service aggregating public data about GitHub Sponsors.
Security researcher, malware dev
Funding Links: https://github.com/sponsors/SaadAhla
Hey, I'm D1rkMtr
I'm a hobbyist Red Team Developer, Student.
You can find me also in :
Twitter
LinkedIn
Loading Remote AES Encrypted PE in memory , Decrypted it and run it
Language: C++ - Stars: 892Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle to ntdll , and trigger exported APIs from the export table
Language: C++ - Stars: 293Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscall instruction address resolving at run time
Language: C++ - Stars: 303This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)
Language: C++ - Stars: 405Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime
Language: C++ - Stars: 298different ntdll unhooking techniques : unhooking ntdll from disk, from KnownDlls, from suspended process, from remote server (fileless)
Language: C++ - Stars: 175