Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.
-
Updated
Jul 5, 2023 - C++
Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.
Demos of various injection techniques found in malware
PE loader with various shellcode injection techniques
Penetration testing utility and antivirus assessment tool.
Various Process Injection Techniques
Evasive Golang Loader
x64/x86 shellcode injector
ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption
This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hollowing
userland exec for Linux x86_64
execute a PE in the address space of another PE aka process hollowing
Nim process hollowing loader
Herpaderply Hollowing - a PE injection technique, hybrid between Process Hollowing and Process Herpaderping
A shellcode runner / injector / hollower in Go, for windows
Lime Crypter Obfuscator Mod
Process hollowing C# shellcode runner that is FUD against Microsoft Defender as of October 7, 2023.
An implementation of the Process Hollowing technique.
The RunPE program is written in C# to execute a specific executable file within another files memory using the ProcessHollowing technique.
Add a description, image, and links to the process-hollowing topic page so that developers can more easily learn about it.
To associate your repository with the process-hollowing topic, visit your repo's landing page and select "manage topics."