Here are
160 public repositories
matching this topic...
Advanced Game Hacking Library for C/C++, Rust and Python (Windows/Linux/FreeBSD) (Process/Memory Hacking) (Hooking/Detouring) (Cross Platform) (x86/x64/ARM/ARM64) (DLL/SO Injection) (Internal/External) (Assembler/Disassembler)
A wrapper library around native windows sytem APIs
Inline syscalls made easy for windows on clang
linux elf injector for x86 x86_64 arm arm64
** DISCONTINUED ** C2 framework that uses Background Intelligent Transfer Service (BITS) as communication protocol and Direct Syscalls + Dinvoke for EDR user-mode hooking evasion.
Generate a variety of suspect actions that are detected by Falco rulesets
Tool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF) via Syswhispers2
Updated
Jul 21, 2022
Assembly
system call hook for Linux
An example rootkit that gives a userland process root permissions
Tool tracing syscalls in a fast way using eBPF linux kernel feature
Small class to help perform syscalls.
This library contains serveral modules that could help you write CKB contract with Rust.
Updated
May 23, 2024
Rust
CS 35L: Software Construction Laboratory
An all-in-one Cobalt Strike BOF to patch, check and revert AMSI and ETW for x64 process. Both syscalls and dynamic resolve versions are available.
A simple x86_64 AMD-v hypervisor type-2 Programmed with C++, with soon to be added syscall hooks. [W.I.P]
Extracting Syscall Stub, Modernized
A manual system call library that supports functions from both ntdll.dll and win32u.dll
Dump system call codes, names, and offsets from Ntdll.dll
Load shellcode via syscall
convenient use of syscalls with a single line and a comfort wrapper, unfriendly for reverse engineer
Improve this page
Add a description, image, and links to the
syscall
topic page so that developers can more easily learn about it.
Curate this topic
Add this topic to your repo
To associate your repository with the
syscall
topic, visit your repo's landing page and select "manage topics."
Learn more
You can’t perform that action at this time.