Shellcode loader written in C and Assembly utilizing direct or indirect syscalls to evade UM EDR hooks
-
Updated
Dec 22, 2024 - C
Shellcode loader written in C and Assembly utilizing direct or indirect syscalls to evade UM EDR hooks
Advanced Windows shellcode development framework with position-independent code generation, dynamic API resolution, and cross-architecture support for security research and penetration testing.
Gaddar is a Windows x64 Malware Development Library with various capabilities.
A python script which search inside a binary and export a probable list of API hash.
API Hashing - a technique employed by malware developers, that makes malware analysis a bit more difficult by hiding suspicious imported Windows APIs from the Import Address Table of the Portable Executable.
Windows API hashing PoC using PEB module enumeration and EAT traversal.
To associate your repository with the api-hashing topic, visit your repo's landing page and select "manage topics."