Skip to content
View oshaked1's full-sized avatar

Block or report oshaked1

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

🏴‍☠️ Hacking and Exploitation

36 repositories

Trace And Rewrite Delays In Syscalls: Hooking time-related Linux syscalls to warp a process's perspective of time, using ptrace.

C 159 13 Updated Apr 20, 2024

Inject a shared library (i.e. arbitrary code) into a live linux process, without ptrace

Python 777 77 Updated Jan 28, 2025

Library for injecting a shared library into a Linux or Windows process

C 539 105 Updated Mar 3, 2024

A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.

C 1,809 229 Updated Apr 7, 2024

Linux kernel rootkit

C 324 58 Updated Jan 27, 2025

A collection of links related to Linux kernel security and exploitation

5,761 987 Updated Jan 5, 2025

A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29

C 576 83 Updated Jul 7, 2024

⬆️ ☠️ 🔥 Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w docker.sock

Go 6,800 583 Updated Mar 12, 2024

A collection of various awesome lists for hackers, pentesters and security researchers

88,558 9,104 Updated Jan 18, 2025

Tool for injecting a shared object into a Linux process

C 1,146 250 Updated Feb 23, 2022

CreateRemoteThread for Linux

C 37 6 Updated Dec 16, 2019

A simple Python library allowing to manipulate Linux processes.

Python 4 1 Updated Apr 28, 2020

An LKM rootkit targeting Linux 2.6/3.x on x86(_64), and ARM

C 647 212 Updated Nov 21, 2017

ebpfkit is a rootkit powered by eBPF

C 776 92 Updated Feb 28, 2023

awesome-linux-rootkits

1,769 245 Updated Jan 10, 2025

Decrypted content of eqgrp-auction-file.tar.xz

Perl 4,110 2,069 Updated May 24, 2017

Collection of malware source code for a variety of platforms in an array of different programming languages.

Assembly 16,429 1,855 Updated Nov 25, 2024

Enumerating and removing kernel callbacks using signed vulnerable drivers

C++ 548 107 Updated Jan 24, 2023

Hook system calls, context switches, page faults and more.

C++ 2,465 502 Updated May 9, 2023

Linux LD_PRELOAD rootkit (x86 and x86_64 architectures)

C 952 194 Updated Dec 11, 2020

UAC bypass by abusing RPC and debug objects.

C++ 610 69 Updated Oct 19, 2023

Proof of concept memory anti-forensic toolkit designed for hiding various artifacts inside the memory dump during memory acquisition on Microsoft Windows operating system

C++ 10 1 Updated Oct 2, 2019

proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC

C 1,198 287 Updated May 1, 2024

Offensive Software Exploitation Course

Python 2,354 383 Updated May 31, 2023

Kernel Driver Utility

C 2,034 432 Updated Nov 10, 2024

Defeating Windows User Account Control

C 6,544 1,331 Updated Feb 7, 2025

HackSys Extreme Vulnerable Driver (HEVD) - Windows & Linux

C 2,553 542 Updated Jan 13, 2025

This map lists the essential techniques to bypass anti-virus and EDR

2,618 290 Updated Feb 6, 2025

Driver loader for bypassing Windows x64 Driver Signature Enforcement

C 1,081 336 Updated Aug 1, 2019

Black Angel is a Windows 11/10 x64 kernel mode rootkit. Rootkit can be loaded with enabled DSE while maintaining its full functionality.

C++ 633 111 Updated Nov 9, 2023