ntdll-unhooking topic
List
ntdll-unhooking repositories
Fuck-Etw
92
Stars
12
Forks
Watchers
Bypass the Event Trace Windows(ETW) and unhook ntdll.
ReflectiveNtdll
163
Stars
23
Forks
Watchers
A Dropper POC with a focus on aiding in EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (using pe2shc by @hasherezade). Payload encryption via SystemFuc...
inline-syscall
172
Stars
30
Forks
Watchers
Inline syscalls made for MSVC supporting x64 and WOW64