
SilentMoonwalk
PoC Implementation of a fully dynamic call stack spoofer

PoC Implementation of a fully dynamic call stack spoofer

Simulates the Windows PE loader to identify DLL hijacking vulnerabilities, generates weaponized DLLs with shellcode payloads, and detects UAC…

Go-based Java serialization protocol analyzer that parses, dumps, and generates deserialization payloads with ysoserial gadget support and a library…

PE loader with various shellcode injection techniques

🗜️ A packer for Windows x86 executable files written in C and Intel x86 Assembly. The new file after packing can obstruct reverse…

C++ library to load DLLs directly from memory without touching disk, with exception handling support, enabling stealthy code execution and evasion of…

Dynamically extracts fresh syscall stubs from ntdll.dll to evade signature-based detection, with a shellcode execution template for Nim-based…

An architecture-agnostic ELF file flattener for shellcode

Write your BPF programs in Go, not C. gobee transpiles a Go subset to BPF C and generates typed cilium/ebpf bindings.

A PoC project for embedding shellcode to Hint/Name Table

💻 ARCH : ARM, ARM64, MIPS, PPC, X86

DLL sideloading/proxying with Nim!

Generate a proxy dll for arbitrary dll

Some Rust program I wrote while learning Malware Development

Automated scanner for discovering DLL search order hijacking candidates in Windows executables, featuring import table parsing, runtime module…

An application to test windows and linux shellcodes

Create Anti-Copy DRM Malware

Get your data from the resource section manually, with no need for windows apis