Black-Angel-Rootkit VS Jormungandr

Compare Black-Angel-Rootkit vs Jormungandr and see what are their differences.

Black-Angel-Rootkit

Black Angel is a Windows 11/10 x64 kernel mode rootkit. Rootkit can be loaded with enabled DSE while maintaining its full functionality. (by XaFF-XaFF)

Jormungandr

Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel. (by Idov31)
Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
Black-Angel-Rootkit Jormungandr
2 5
565 210
- -
4.4 4.5
6 months ago 7 months ago
C++ C++
GNU General Public License v3.0 only GNU General Public License v3.0 only
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

Black-Angel-Rootkit

Posts with mentions or reviews of Black-Angel-Rootkit. We have used some of these posts to build our list of alternatives and similar projects.

Jormungandr

Posts with mentions or reviews of Jormungandr. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-06-24.

What are some alternatives?

When comparing Black-Angel-Rootkit and Jormungandr you can also consider the following projects:

inline_syscall - Inline syscalls made easy for windows on clang

Sandman - Sandman is a NTP based backdoor for red team engagements in hardened networks.

ZwProcessHollowing - ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption

Venom - Venom is a library that meant to perform evasive communication using stolen browser socket

Kernel-Process-Hollowing - Windows x64 kernel mode rootkit process hollowing POC.

Machinegun - Machinegun is an advanced version of Metasploit's railgun, capable of reliably running arbitrary Windows API functions on a remote computer and getting the results to the attacker's machine.

Cronos - PoC for a sleep obfuscation technique leveraging waitable timers to evade memory scanners.

Inline-Execute-PE - Execute unmanaged Windows executables in CobaltStrike Beacons

Nidhogg - Nidhogg is an all-in-one simple to use rootkit.

Amsi-Killer - Lifetime AMSI bypass