0x11DFE / file-unpumper
Tool that can be used to trim useless things from a PE file such as the things a file pumper would add.
☆25Updated 7 months ago
Alternatives and similar repositories for file-unpumper:
Users that are interested in file-unpumper are comparing it to the libraries listed below
- Extension functionality for the NightHawk operator client☆26Updated last year
- powershell script i wrote that can suspend an arbitrary process (with limits)☆20Updated last year
- Beacon Object Files used for Cobalt Strike☆17Updated last year
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆21Updated 7 months ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- Loading and executing shellcode in C# without PInvoke.☆20Updated 3 years ago
- freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package☆34Updated last year
- ☆12Updated 2 years ago
- A utility that can be used to launch an executable with a DLL injected☆18Updated last year
- Python3 tool to perform password spraying using RDP☆16Updated last year
- Unix Process hollowing in rust☆20Updated 2 months ago
- A proof-of-concept shellcode loader that leverages AI/ML face recognition models to verify the identity of a user on a target system☆36Updated 3 months ago
- Drakus allows you to monitor the artifacts and domains used in a Red Team exercise to see if they have been uploaded to certain online ma…☆13Updated 4 years ago
- ☆18Updated last month
- Mythic C2 wrapper for NimSyscallPacker☆21Updated 2 months ago
- Yet, Another Packer/Loader☆25Updated last year
- A lexer and parser for Sleep☆16Updated last month
- ☆28Updated last year
- string encryption in Nim☆17Updated 8 months ago
- Helper script for BloodHound to automatically add relationships between multiple accounts owned by the same individual☆13Updated 2 years ago
- An issue in AVG AVG Anti-Spyware v.7.5 allows an attacker to execute arbitrary code via a crafted script to the guard.exe component☆11Updated last year
- PoC for detecting and evading ETW detection of .Net Assembly.Load☆19Updated 4 years ago
- An adaptation of timwhitez's proxycall that uses kernelbase.dll!Beep.