Ido Veltzman (Idov31)

Idov31

Geek Repo

Location:mov eax, [ebp+location]

Home Page:idov31.github.io

Twitter:@Idov31

Github PK Tool:Github PK Tool

Ido Veltzman's repositories

Nidhogg

Nidhogg is an all-in-one simple to use rootkit.

Language:C++License:GPL-3.0Stargazers:1622Issues:32Issues:15

Sandman

Sandman is a NTP based backdoor for red team engagements in hardened networks.

Language:C#License:GPL-3.0Stargazers:692Issues:13Issues:2

FunctionStomping

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

Language:RustLicense:GPL-3.0Stargazers:670Issues:18Issues:8

Cronos

PoC for a sleep obfuscation technique leveraging waitable timers to evade memory scanners.

Language:CLicense:GPL-3.0Stargazers:538Issues:9Issues:2

Venom

Venom is a library that meant to perform evasive communication using stolen browser socket

Language:C++License:GPL-3.0Stargazers:364Issues:4Issues:0

MrKaplan

MrKaplan is a tool aimed to help red teamers to stay hidden by clearing evidence of execution.

Language:PowerShellLicense:GPL-3.0Stargazers:248Issues:13Issues:1

Jormungandr

Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.

Language:C++License:GPL-3.0Stargazers:214Issues:5Issues:0

NidhoggScript

NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg

Language:C++License:GPL-3.0Stargazers:40Issues:2Issues:0

rustomware

Simple ransomware written in Rust. Part of the building a rustomware blog post.

Language:YARALicense:GPL-3.0Stargazers:30Issues:2Issues:0

UdpInspector

Listing UDP connections with remote address without sniffing.

Language:C++License:GPL-3.0Stargazers:28Issues:4Issues:1

NidhoggCSharpApi

C# API for Nidhogg rootkit

Language:C#License:GPL-3.0Stargazers:12Issues:0Issues:0

OffensiveRust

Rust Weaponization for Red Team Engagements.

Language:RustStargazers:11Issues:1Issues:0

hotkey_exploitation

This repository contains the POC and the scanner to catch the Shortcut Hotkey Exploitation method.

Language:PythonLicense:GPL-3.0Stargazers:6Issues:3Issues:0

talks-and-publications

Released presentations of my talks + code that used during these talks

Language:C++License:GPL-3.0Stargazers:6Issues:2Issues:0
Language:TypeScriptLicense:GPL-3.0Stargazers:3Issues:2Issues:0