Skip to content
You must be logged in to sponsor SaadAhla

Become a sponsor to d1rk

Hey, I'm D1rkMtr
I'm a hobbyist Red Team Developer, Student.
You can find me also in :
Twitter
LinkedIn

@SaadAhla

It would be very motivating

Current sponsors 1

@VirtualAlllocEx
Past sponsors 2
@redkeyszn
@fin3ss3g0d

Featured work

  1. SaadAhla/FilelessPELoader

    Loading Remote AES Encrypted PE in memory , Decrypted it and run it

    C++ 861
  2. SaadAhla/NTDLLReflection

    Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle to ntdll , and trigger exported APIs from the export table

    C++ 287
  3. SaadAhla/D1rkLdr

    Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscall instruction address resolving at run time

    C++ 298
  4. SaadAhla/Shellcode-Hide

    This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)

    C++ 397
  5. SaadAhla/UnhookingPatch

    Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime

    C++ 295
  6. SaadAhla/ntdlll-unhooking-collection

    different ntdll unhooking techniques : unhooking ntdll from disk, from KnownDlls, from suspended process, from remote server (fileless)

    C++ 171

5% towards 20 monthly sponsors goal

@VirtualAlllocEx

VirtualAlllocEx sponsors this goal

Select a tier

$ a month

Choose a custom amount.

$5 a month

Select

Get a Sponsor badge on your profile

$10 a month

Select

Get a Sponsor badge on your profile

$20 a month

Select

Get a Sponsor badge on your profile