Ido Veltzman (Idov31)

Idov31

User data from Github https://github.com/Idov31

Location:mov rax, [rbp+location]

Home Page:idov31.github.io

GitHub:@Idov31

Twitter:@Idov31

Ido Veltzman's repositories

Nidhogg

Nidhogg is an all-in-one simple to use windows kernel rootkit.

Language:C++License:GPL-3.0Stargazers:2089Issues:36Issues:17

Sandman

Sandman is a NTP based backdoor for red team engagements in hardened networks.

Language:C#License:GPL-3.0Stargazers:786Issues:15Issues:2

FunctionStomping

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

Language:RustLicense:GPL-3.0Stargazers:706Issues:18Issues:8

Cronos

PoC for a sleep obfuscation technique leveraging waitable timers to evade memory scanners.

Language:CLicense:GPL-3.0Stargazers:580Issues:11Issues:2

Venom

Venom is a library that meant to perform evasive communication using stolen browser socket

Language:C++License:GPL-3.0Stargazers:379Issues:7Issues:0

MrKaplan

MrKaplan is a tool aimed to help red teamers to stay hidden by clearing evidence of execution.

Language:PowerShellLicense:GPL-3.0Stargazers:265Issues:13Issues:1

Jormungandr

Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.

Language:C++License:GPL-3.0Stargazers:226Issues:8Issues:0

NidhoggScript

NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg

Language:C++License:GPL-3.0Stargazers:47Issues:4Issues:0

rustomware

Simple ransomware written in Rust. Part of the building a rustomware blog post.

Language:YARALicense:GPL-3.0Stargazers:33Issues:3Issues:0

UdpInspector

Listing UDP connections with remote address without sniffing.

Language:C++License:GPL-3.0Stargazers:30Issues:6Issues:1

NidhoggCSharpApi

C# API for Nidhogg rootkit

Language:C#License:GPL-3.0Stargazers:17Issues:1Issues:0

talks-and-publications

Released presentations of my talks + code that used during these talks

Language:C++License:GPL-3.0Stargazers:13Issues:3Issues:0

OffensiveRust

Rust Weaponization for Red Team Engagements.

Language:RustStargazers:11Issues:1Issues:0

hotkey_exploitation

This repository contains the POC and the scanner to catch the Shortcut Hotkey Exploitation method.

Language:PythonLicense:GPL-3.0Stargazers:6Issues:2Issues:0
Language:TypeScriptLicense:GPL-3.0Stargazers:2Issues:2Issues:0