0xcpu / bonomen
BONOMEN - Hunt for Malware Critical Process Impersonation
☆48Updated 4 years ago
Alternatives and similar repositories for bonomen:
Users that are interested in bonomen are comparing it to the libraries listed below
- Exposing the Neutrino EK: All the Naughty Bits (BSidesLV16)☆15Updated 8 years ago
- POC for IAT Parsing Payloads☆48Updated 8 years ago
- SEQ/Ack signature triggered SSL back connect☆10Updated 8 years ago
- Swiss Army knife for raw bytes manipulation & interception☆56Updated 2 years ago
- collection of useful shells for penetration tests☆37Updated 8 years ago
- Yara filetype plugin for Vim.☆14Updated 4 years ago
- ☆13Updated 9 years ago
- Post Exploitation Linux Toolkit☆33Updated 8 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 7 years ago
- Linux and Windows Hardening Points☆12Updated 7 years ago
- Remote timing attack exploit against most Zeus/Zbot variants including Citadel, Ice9, Zeus 2.3, KINS/ZeusVM etc..☆24Updated 9 years ago
- Print the strings of encoded printable characters in files☆12Updated 9 years ago
- Yara Plugin for Binary Ninja☆13Updated 7 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- Disassembler Library for x86 and x86-64☆8Updated 10 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- An offensive bash script which tries to find GENERIC privesc vulnerabilities and issues.☆13Updated 7 years ago
- ☆32Updated 10 months ago
- Emofishes is a collection of proof-of-concepts that help improve, bypass or detect virtualized execution environments (focusing on the on…☆15Updated 2 years ago
- Mapping of Binaries that allows Arbitrary Code Execution☆25Updated 6 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- A configurable OS shell command injection vulnerability testbed☆15Updated 11 years ago
- SQL Injection without the pain of syringes.☆25Updated 8 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- Environmental (and http) keying for scripting languages☆39Updated 6 years ago
- ☆18Updated last year
- Archive Mirror for recently republished PoC/Exploit code☆17Updated 7 years ago
- IDA Pomidor is a plugin for Hex-Ray's IDA Pro disassembler that will help you retain concentration and productivity during long reversing…☆35Updated 10 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Updated 8 years ago
- Fileless SQL Server CLR-based Custom Stored Procedure Command Execution☆35Updated 8 years ago