Abdelrahme / WinLogHuntLinks
☆21Updated 4 months ago
Alternatives and similar repositories for WinLogHunt
Users that are interested in WinLogHunt are comparing it to the libraries listed below
Sorting:
- ☆48Updated 7 months ago
- ☆30Updated 4 months ago
- Small tool to play with IOCs caused by Imageload events☆43Updated 2 years ago
- ☆46Updated 2 years ago
- a short C code POC to gain persistence and evade sysmon event code registry (creation, update and deletion) REG_NOTIFY_CLASS Registry Cal…☆65Updated 2 years ago
- Detect Remote Local Credentials Dumping using a Shadow Snapshot☆31Updated 11 months ago
- Reverse Engineering and Debugging Malware☆32Updated 2 years ago
- Ghosting-AMSI☆18Updated 8 months ago
- Identifies metadata of .NET binary files.☆21Updated last year
- ☆18Updated last year
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 10 months ago
- Docker container for running CobaltStrike 4.10☆37Updated last year
- single-threaded event driven sleep obfuscation poc for linux☆37Updated 7 months ago
- Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and en…☆43Updated last year
- ☆18Updated last year
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- ☆59Updated last year
- example using NtCreateUserProcess in rust☆19Updated 11 months ago
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆52Updated last year
- ☆23Updated last year
- ☆32Updated last year
- ☆15Updated last year
- ☆27Updated last year
- ☆76Updated 3 years ago
- A pure C version of SymProcAddress☆30Updated last year
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆35Updated 2 years ago
- Red Teaming Tradecraft☆28Updated 3 years ago
- A curated collection of Living off the Land (LotL) attack demonstrations where trusted binaries go rogue, because if it didn’t launch cal…☆33Updated last week
- malleable profile generator GUI for Havoc☆55Updated 2 years ago
- Just another Process Injection using Process Hollowing technique.☆19Updated 2 years ago