0xcpu / bonomenLinks
BONOMEN - Hunt for Malware Critical Process Impersonation
☆50Updated 5 years ago
Alternatives and similar repositories for bonomen
Users that are interested in bonomen are comparing it to the libraries listed below
Sorting:
- POC for IAT Parsing Payloads☆48Updated 9 years ago
- Print the strings of encoded printable characters in files☆12Updated 10 years ago
- Exposing the Neutrino EK: All the Naughty Bits (BSidesLV16)☆15Updated 9 years ago
- Scripts for communication with Bunitu Trojan C&Cs☆19Updated 10 years ago
- A Generic Windows Memory Scraping Tool☆71Updated 8 years ago
- An offensive bash script which tries to find GENERIC privesc vulnerabilities and issues.☆13Updated 8 years ago
- Local enumeration and exploitation framework.☆18Updated 8 years ago
- Swiss Army knife for raw bytes manipulation & interception☆56Updated 2 years ago
- Linux-KVM with rVMI extensions☆22Updated 8 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Emofishes is a collection of proof-of-concepts that help improve, bypass or detect virtualized execution environments (focusing on the on…☆15Updated 2 years ago
- Test suite for bypassing Malware sandboxes.☆38Updated 11 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆58Updated 8 years ago
- Nano meterpreter shell based on TinyMet☆28Updated 9 years ago
- Memory searching utilities☆43Updated 12 years ago
- Linux and Windows Hardening Points☆12Updated 7 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 8 years ago
- ☆10Updated 8 years ago
- pure Python binary analysis framework☆23Updated 7 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Updated 8 years ago
- SEQ/Ack signature triggered SSL back connect☆10Updated 9 years ago
- ☆13Updated 9 years ago
- API functions for Malware Research☆35Updated 6 years ago
- Rekall Forensics and Incident Response Framework with rVMI extensions☆33Updated 4 years ago
- Remote timing attack exploit against most Zeus/Zbot variants including Citadel, Ice9, Zeus 2.3, KINS/ZeusVM etc..☆24Updated 10 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- Exploit Reliability Testing System☆35Updated 10 years ago
- Mapping of Binaries that allows Arbitrary Code Execution☆26Updated 7 years ago
- Yara filetype plugin for Vim.☆14Updated 4 years ago
- Pack required dlls into a single binary that has no imports and makes direct syscalls on Windows☆28Updated 8 years ago