Microsoft Vulnerable Driver Block Lists in CSV and JSON for SIEM lookups
☆55May 15, 2026Updated last month
Alternatives and similar repositories for Microsoft-Vulnerable-Driver-Block-Lists
Users that are interested in Microsoft-Vulnerable-Driver-Block-Lists are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Bypass WiFi client isolation on Open and WPA2-PSK networks☆42Oct 14, 2025Updated 8 months ago
- Custom Amsi Bypass by patching AmsiOpenSession function in amsi.dll☆53Jun 16, 2025Updated last year
- Various shellcodes☆12Sep 1, 2020Updated 5 years ago
- Scan files for potential threats while leveraging AMSI (Antimalware Scan Interface) and Windows Defender. By isolating malicious content.☆40Jan 2, 2025Updated last year
- Rules shared by the community from 100 Days of YARA 2025☆38Jan 2, 2026Updated 5 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Fast Windows post-exploitation wins after initial access.☆29Jan 28, 2026Updated 4 months ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into a SQL DB☆24Jun 27, 2025Updated 11 months ago
- hook detector using emulation and comparing static with dynamic outputs☆17Aug 11, 2023Updated 2 years ago
- Identify and extract files from container formats using unblob.☆27May 29, 2026Updated 2 weeks ago
- Repository for the DEF CON 33 talk: Kill Chain Reloaded☆83Aug 3, 2025Updated 10 months ago
- ☆26Jun 6, 2026Updated last week
- x64 PE bin2bin obfuscator which doesn't add a section to the binary☆263May 25, 2026Updated 3 weeks ago
- Contains research.splunk.com site code☆11Apr 10, 2024Updated 2 years ago
- Safe Harbor is a BOF that streamlines process reconnaissance for red team operations by identifying trusted, low-noise targets to maintai…☆81Oct 27, 2025Updated 7 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Integer overflow in FreeType software, which also affects Chrome☆31Aug 27, 2025Updated 9 months ago
- A C# PE loader for x64 and x86 PE files.☆55Mar 9, 2026Updated 3 months ago
- 带后门,自测☆24Jun 4, 2025Updated last year
- Based on minhook☆34Sep 20, 2023Updated 2 years ago
- Your Browser-based EVTX Companion☆120May 31, 2026Updated 2 weeks ago
- Windows Defender VDM lua collections☆48Oct 30, 2022Updated 3 years ago
- RuleVis is a powerful analysis tool that transforms your Wazuh ruleset into a dynamic, interactive force-directed graph. It helps you vis…☆26Nov 12, 2025Updated 7 months ago
- Proof of concepts demonstrating some aspects of the Windows kernel shadow stack mitigation.☆56Jun 2, 2025Updated last year
- ☆31Feb 28, 2025Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A tool designed for smuggling interactive command and control traffic through legitimate TURN servers hosted by reputable providers such …☆420Jun 9, 2026Updated last week
- Multi-agent AI system using GPT-4o, DeepSeek v3, and Llama 3.3 to detect if CVE vulnerabilities were exploited as zero-days. Analyzes…☆20Feb 13, 2026Updated 4 months ago
- Tools for Incident Response and Malware Analysis☆11Feb 9, 2025Updated last year
- OMIGOD! OM I GOOD? A free scanner to detect VMs vulnerable to one of the "OMIGOD" vulnerabilities discovered by Wiz's threat research tea…☆20Sep 22, 2021Updated 4 years ago
- windows rpc 使用MIDL+RPC实现HelloWorld☆24Mar 21, 2018Updated 8 years ago
- [WIP] A FOSS hook-powered HIPS for Windows / 火绒文件防御功能开源实现☆11Jun 24, 2024Updated last year
- MouHidInputHook enables users to filter, modify, and inject mouse input data packets into the input data stream of HID USB mouse devices …☆11Jul 11, 2019Updated 6 years ago
- Packet Monkey is a tool to filter and classify PCAPs using Wireshark filters☆11Feb 27, 2026Updated 3 months ago
- NSecSoftBYOVD POC☆61Feb 12, 2026Updated 4 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆18Jun 16, 2025Updated last year
- Windows 10/11 unsigned kernel driver load/debugging☆20Feb 17, 2023Updated 3 years ago
- Multiplatform MEMORY.DMP analysis tool with a WinDbg flavor☆172Apr 20, 2026Updated last month
- ☆20Mar 26, 2026Updated 2 months ago
- Network scanning tool designed to detect and report changes in open ports and services over time☆13Oct 16, 2025Updated 8 months ago
- load shellcode without P/D Invoke and VirtualProtect call.☆171Sep 2, 2025Updated 9 months ago
- Native C++ access to Active Directory over ADWS, no .NET, no WCF, no HTTP stack.☆79Mar 27, 2026Updated 2 months ago