D3Ext / malware-practices
Repo for malware development practices I post on my blog
☆28Updated 5 months ago
Alternatives and similar repositories for malware-practices:
Users that are interested in malware-practices are comparing it to the libraries listed below
- Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)☆40Updated last year
- Hunt for C2 servers and phishing web sites using VirusTotal API , you can modify code to kill the malicious process☆69Updated 10 months ago
- Various implementations for C# in memory execution. Assembly.Load() Assembly.LoadFile() AppDomain.ExecuteAssembly()☆34Updated 4 years ago
- ☆33Updated 2 years ago
- An offensive security framework for writing payloads☆16Updated 2 years ago
- IAT Unhooking proof-of-concept☆30Updated 11 months ago
- ☆39Updated last year
- Unfixed Windows PowerShell Filename Code Execution POC☆41Updated last year
- A small Aggressor script to help Red Teams identify foreign processes on a host machine☆84Updated 2 years ago
- A tool for interacting with the Anti-Malware Scan Interface API for pen testing purposes.☆61Updated last year
- Golang bindings for PE-sieve☆42Updated last year
- Create Anti-Copy DRM Malware☆54Updated 7 months ago
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆62Updated 3 months ago
- Collection of Rust repos useful for Red Teamers.☆32Updated 2 years ago
- This is a CS project that will encrypt shell code from msfvenom using AES☆22Updated 3 years ago
- ☆18Updated 5 months ago
- Work in progress experiments with reverse shells, AV bypass and extraction of secrets from memory in C☆39Updated 5 years ago
- A small red team course☆36Updated last year
- Duplicate not owned Token from Running Process☆72Updated last year
- ☆54Updated 5 months ago
- ADSI based SA tool☆17Updated 2 years ago
- Dell Driver EoP (CVE-2021-21551)☆32Updated 3 years ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆63Updated last year
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆32Updated 2 years ago
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆47Updated last year
- ☆26Updated last year
- Personal notes from Red teamer for Blue/Red/Purple.☆53Updated last year
- Small toolkit for extracting information and dumping sensitive strings from Windows processes☆109Updated 8 months ago
- Token Elevation to authorized user as SYSTEM or Domain Admins☆23Updated last year
- ☆52Updated last year