10 Commits

Author SHA1 Message Date
kmanc 9fef97d6d0 Cargo fmt (#57)
* ran cargo fmt and accepted whatever it gave me

* not sure why it did that but i dont like those ones

* aside from that one format which i keep undoing i like them
2022-09-12 08:30:58 -07:00
kmanc 2e1514c109 Reduce unsafe (#55)
* cargo things

* no more mem::zeroed, using default / null traits

* more removal of lib calls where not needed

* need to test a few payloads to make sure i didnt break anything

* remove non-needed cast

* lots of reorg so things are easier to read. still have some work to go + gotta redo for all the antistrings

* clean up some more junk and try not to create things as null when youre just gonna assign to them anyway

* lock things

* discovered a (probably) long standing bug. dirty workaround in place but gonna want to revisit that eventually

* Update reverse shell badge data via Github Action

* Update process migration badge data via Github Action

* Update process hollowing badge data via Github Action

* Update xor params badge data via Github Action

Co-authored-by: kmanc <kmanc@users.noreply.github.com>
2022-08-22 11:26:57 -07:00
kmanc cea2e51ba0 Code style (#54)
* no substantive changes, just small updates

* shouldn't be any real change, just some code style best practices

* dunno how this didn't get added to the last commit

* Update reverse shell badge data via Github Action

* Update process migration badge data via Github Action

* Update process hollowing badge data via Github Action

Co-authored-by: kmanc <kmanc@users.noreply.github.com>
2022-08-18 04:54:13 -07:00
kmanc d0cc506090 Dependencies (#48)
* fix dependency compat again

* missed a comma

* Update reverse shell badge data via Github Action

* Update process migration badge data via Github Action

* Update process hollowing badge data via Github Action

Co-authored-by: kmanc <kmanc@users.noreply.github.com>
2022-05-25 17:25:26 -07:00
kmanc 8af8caf75e randomize the anti-sandbox website check (#43)
* randomize the anti-sandbox website check

* Update process migration badge data via Github Action

* Update process hollowing badge data via Github Action

Co-authored-by: kmanc <kmanc@users.noreply.github.com>
2022-04-13 21:39:01 -07:00
kmanc 6e874b9887 Cleanup and refactor (#33)
* whoops

* newlines to end files

* better code comments

* better code comments

* only compile necessary features. ones not asked for get dummy stub functions

* newline at end of file

* small version bump. better conditional compilation logic. better code comments

* build updates to try to cover feature combinations

* typo

* lock

* glaring readme issues...will address more on separate branch

* newline

* typo

* typo

* this was more than just a patch bump for utils

* Update reverse shell badge data via Github Action

* Update process migration badge data via Github Action

* Update process hollowing badge data via Github Action

* Update xor params badge data via Github Action

* lock

* compat change on windows crate

* require newer win version to support change

Co-authored-by: kmanc <kmanc@users.noreply.github.com>
2022-02-03 16:57:30 -08:00
kmanc 4dc19550e0 Parameterize (#30)
* lock file

* version bump

* allow user to choose which process they target for migration, but provide defaults that should work

* more lock updates

* version bump

* allow user to choose which process they target for hollowing, but provide defaults that should work

* Update process migration badge data via Github Action

* Update process hollowing badge data via Github Action

Co-authored-by: kmanc <kmanc@users.noreply.github.com>
2022-02-01 23:30:18 -08:00
kmanc c30ef14d9a Bugfix (#20)
* safer to not go under 100 pid

* Update Cargo.toml

* Update process migration badge data via Github Action

Co-authored-by: kmanc <kmanc@users.noreply.github.com>
2022-01-25 14:31:34 -08:00
kmanc a96331d8c4 Process migration cleanup (#13)
* version bump for process migration

* format strings, swap from win32 'W' calls to 'A' calls for consistency in workspace
2022-01-19 10:01:44 -08:00
kmanc 8b2752a5a5 Process migration (#10)
* more precise setup

* smarter imports changed lock

* import only in the mod file

* libc for unix

* import in mod file

* import in mod file

* WIP

* unix --> linux

* target linux correctly

* working build, non-working functionality

* really not sure how to run this thing

* clippy suggestion

* dependencies getting narrowed down

* get target pid and verify ptrace perms with process_vm_readv

* need a linux shellcode too

* swapped to ptrace, feel like im close

* seg faults are common and i never get the shell

* this seems more robust but also doesnt work

* removed a few prints and added some coments

* trying to debug this

* looks nicer this way

* idk what im doing

* have i narrowed down the problem?

* still trying to figure out what doesnt work

* minimal nix version via cargo-minimal-verions

* missed commit

* ok finally it works, but in a way that i would never have thought the documentation on ptrace indicated

* it actually works now! and is cleaned up
2022-01-15 20:41:21 -08:00