Banshee

Rootkit

A Windows kernel rootkit with anti-rootkit evasion features and keylogging capabilities.

Experimental Windows x64 Kernel Rootkit with anti-rootkit evasion features.

GitHub

493 stars
13 watching
71 forks
Language: C++
last commit: 8 months ago
driverkernelmalware-developmentring0rootkit

Related projects:

Repository Description Stars
eterna1/puszek-rootkit A Linux rootkit that hooks the system call table to hide files and processes. 156
d4stiny/spectre A proof-of-concept Windows kernel-mode rootkit designed to demonstrate legitimate communication channel exploitation for remote control. 685
gui774ume/ebpfkit A rootkit powered by eBPF designed to demonstrate offensive security techniques and bypass kernel protections. 761
h3xduck/triplecross A Linux rootkit demonstrating the offensive capabilities of eBPF technology using various techniques such as backdoors, C2 channels and code injection. 1,786
mempodippy/vlany A Linux rootkit designed to evade detection and maintain persistence on compromised systems 944
0xsp-srd/mortar A toolset designed to evade detection by security products and execute malware safely 1,413
yaoyumeng/adore-ng A Linux rootkit adapted for 2.6 and 3.x kernel versions 205
nullarray/roothelper A collection of scripts for aiding in privilege escalation on Linux systems 485
spencerdodd/kernelpop Automated framework for discovering and exploiting kernel vulnerabilities on Linux and macOS. 687
m0nad/diamorphine A Linux kernel module designed to create a stealthy backdoor and hide processes or users from system administrators. 1,840
pjrinaldi/wombatforensics A multi-threaded GUI forensic analysis tool for Linux 47
elitak/nixos-infect A script to install NixOS on non-NixOS hosts by wiping and reinstalling the root filesystem. 1,380
beahunt3r/windows-hunting A collection of tools and resources to aid Windows threat hunters in identifying common security artifacts. 347
kentindell/canhack A collection of tools and resources for low-level CAN protocol hacking and analysis 348
twelvesec/rootend A tool designed to automate the discovery and exploitation of security vulnerabilities in Unix systems. 146