Banshee

Rootkit

A Windows kernel rootkit with anti-rootkit evasion features and keylogging capabilities.

Experimental Windows x64 Kernel Rootkit with anti-rootkit evasion features.

GitHub

502 stars
13 watching
73 forks
Language: C++
last commit: over 2 years ago
driverkernelmalware-developmentring0rootkit

Related projects:

RepositoryDescriptionStars
eterna1/puszek-rootkitA Linux rootkit that hooks the system call table to hide files and processes.157
d4stiny/spectreA proof-of-concept Windows kernel-mode rootkit designed to demonstrate legitimate communication channel exploitation for remote control.685
gui774ume/ebpfkitA rootkit powered by eBPF designed to demonstrate offensive security techniques and bypass kernel protections.766
h3xduck/triplecrossA Linux rootkit demonstrating the offensive capabilities of eBPF technology using various techniques such as backdoors, C2 channels and code injection.1,796
mempodippy/vlanyA Linux rootkit designed to evade detection and maintain persistence on compromised systems947
0xsp-srd/mortarA toolset designed to evade detection by security products and execute malware safely1,421
yaoyumeng/adore-ngA Linux rootkit adapted for 2.6 and 3.x kernel versions206
nullarray/roothelperA collection of scripts for aiding in privilege escalation on Linux systems485
spencerdodd/kernelpopAutomated framework for discovering and exploiting kernel vulnerabilities on Linux and macOS.687
m0nad/diamorphineA Linux kernel module designed to create a stealthy backdoor and hide processes or users from system administrators.1,865
pjrinaldi/wombatforensicsA multi-threaded GUI forensic analysis tool for Linux48
elitak/nixos-infectA script to install NixOS on non-NixOS hosts by wiping and reinstalling the root filesystem.1,418
beahunt3r/windows-huntingA collection of tools and resources to aid Windows threat hunters in identifying common security artifacts.347
kentindell/canhackA collection of tools and resources for low-level CAN protocol hacking and analysis351
twelvesec/rootendA tool designed to automate the discovery and exploitation of security vulnerabilities in Unix systems.147