ben's starred repositories
awesome-oss-alternatives
Awesome list of open-source startup alternatives to well-known SaaS products 🚀
MalwareSourceCode
Collection of malware source code for a variety of platforms in an array of different programming languages.
pe_to_shellcode
Converts PE into a shellcode
AlternativeShellcodeExec
Alternative Shellcode Execution Via Callbacks
OffensiveVBA
This repo covers some code execution and AV Evasion methods for Macros in Office documents
ShellcodeTemplate
An easily modifiable shellcode template for Windows x64/x86
AtomPePacker
A Highly capable Pe Packer
SilentMoonwalk
PoC Implementation of a fully dynamic call stack spoofer
HandleKatz
PIC lsass dumper using cloned handles
Skrull
Skrull is a malware DRM, that prevents Automatic Sample Submission by AV/EDR and Signature Scanning from Kernel. It generates launchers that can run malware on the victim using the Process Ghosting technique. Also, launchers are totally anti-copy and naturally broken when got submitted.
Ninja_UUID_Runner
Module Stomping, No New Thread, HellsGate syscaller, UUID Shellcode Runner for x64 Windows 10!
akamai-security-research
This repository includes code and IoCs that are the product of research done in Akamai's various security research teams.
Awesome-Binary-Rewriting
An awesome & curated list of binary rewriting papers
COFFLoader2
Load and execute COFF files and Cobalt Strike BOFs in-memory
IORI_Loader
UUID shellcode Loader with dynamic indirect syscall implementation, syscall number/instruction get resolved dynamicaly at runtime, and the syscall number/instruction get unhooked using Halosgate technique. Function address get resolved from the PEB by offsets and comparaison by hashes
0xpat.github.io
0xpat blog