mirror of
https://github.com/HuskyHacks/windows-x64-shellcode-pipeline
synced 2026-06-06 15:54:25 +00:00
Update README.md
This commit is contained in:
@@ -6,7 +6,7 @@ A Dockerized build pipeline for custom Windows x64 shellcode, including a custom
|
||||
|
||||
I highly recommend trying to build Windows shellcode from scratch at least once. It's a checkpoint of understanding malware development and Windows internals. But authoring shellcode by writing assembly directly is something I wouldn't wish on my worst ops.
|
||||
|
||||
Inspired by @hasherezade's excellent paper [From a C project, through assembly, to shellcode](https://raw.githubusercontent.com/hasherezade/masm_shc/master/docs/FromaCprojectthroughassemblytoshellcode.pdf), this is a full build pipeline for customized x64 Windows shellcode that allows users to author payloads in C rather than assembly. Writing shellcode directly in assembly is time consuming, tedious, and error prone. Compiling a C program tailored for position-independent execution and subsequentally extracting the code from that PE is a much better option, which is what her paper covers.
|
||||
Inspired by [@hasherezade's](https://github.com/hasherezade) excellent paper [From a C project, through assembly, to shellcode](https://raw.githubusercontent.com/hasherezade/masm_shc/master/docs/FromaCprojectthroughassemblytoshellcode.pdf), this is a full build pipeline for customized x64 Windows shellcode that allows users to author payloads in C rather than assembly. Writing shellcode directly in assembly is time consuming, tedious, and error prone. Compiling a C program tailored for position-independent execution and subsequentally extracting the code from that PE is a much better option, which is what her paper covers.
|
||||
|
||||
Her paper details how to perform the process entirely within the Visual Studio dev environment, which usually means developing within Windows. I wanted to port this process over to a Dockerized build pipeline that supports the entire process and cross-compiles the source into the final product. This project also implements the automated post-processing that her paper mentions.
|
||||
|
||||
|
||||
Reference in New Issue
Block a user