VXUG-Papers
Research code & papers from members of vx-underground. (by vxunderground)
transacted_hollowing
Transacted Hollowing - a PE injection technique, hybrid between ProcessHollowing and ProcessDoppelgänging (by hasherezade)
VXUG-Papers | transacted_hollowing | |
---|---|---|
2 | 2 | |
1,186 | 529 | |
3.0% | 1.1% | |
3.2 | 3.5 | |
over 3 years ago | about 1 year ago | |
C | C | |
- | MIT License |
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
VXUG-Papers
Posts with mentions or reviews of VXUG-Papers.
We have used some of these posts to build our list of alternatives
and similar projects.
transacted_hollowing
Posts with mentions or reviews of transacted_hollowing.
We have used some of these posts to build our list of alternatives
and similar projects.
What are some alternatives?
When comparing VXUG-Papers and transacted_hollowing you can also consider the following projects:
neurax - A framework for constructing self-spreading binaries
process_ghosting - Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted file
pe - A :zap: lightweight Go package to parse, analyze and extract metadata from Portable Executable (PE) binaries. Designed for malware analysis tasks and robust against PE malformations.
Vaccine - :syringe: Vaccine - Make your apps immune to recompile-disease
Coldfire - Golang malware development library
Reverse-Engineering-Tutorial - A FREE comprehensive reverse engineering tutorial covering x86, x64, 32-bit/64-bit ARM, 8-bit AVR and 32-bit RISC-V architectures.