Repository navigation

#

process-hollowing

Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.

C++
1133
2 年前

Demos of various injection techniques found in malware

C
791
3 年前

PE loader with various shellcode injection techniques

C++
405
3 年前

A more stealthy variant of "DLL hollowing"

C
347
1 年前

Collection of shellcode injection techniques packed in a D/Invoke weaponized DLL

C#
178
3 年前

ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption

C++
84
2 年前

This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hollowing

C++
69
1 年前

userland exec for Linux x86_64

C
67
3 年前

execute a PE in the address space of another PE aka process hollowing

Go
55
3 年前

Herpaderply Hollowing - a PE injection technique, hybrid between Process Hollowing and Process Herpaderping

C
54
3 年前

RunPE using Hell's Gate technique.

C
32
4 年前

A shellcode runner / injector / hollower in Go, for windows

Go
26
3 年前

Process hollowing C# shellcode runner that is FUD against Microsoft Defender as of October 7, 2023.

C#
18
2 年前

An implementation of the Process Hollowing technique.

C++
16
4 年前