DidierStevens / AdHoc
AdHoc solutions
☆48Updated last year
Alternatives and similar repositories for AdHoc:
Users that are interested in AdHoc are comparing it to the libraries listed below
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆62Updated 2 years ago
- Quickly search for references to a GUID in DLLs, EXEs, and drivers☆69Updated 3 years ago
- Triaging Windows event logs based on SANS Poster☆38Updated 2 years ago
- Kerberos laboratory to better understand and then detecting attack on kerberos☆67Updated 3 years ago
- ☆15Updated 3 years ago
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆59Updated last month
- SharpShareFinder is a minimalistic network share discovery POC designed to enumerate shares in Windows Active Directory networks leveragi…☆25Updated 6 months ago
- subTee gists code backups☆37Updated 7 years ago
- Simple PowerShell script to enable process scanning with Yara.☆91Updated 2 years ago
- Unpacking and decryption tools for the Emotet malware☆46Updated 3 years ago
- ☆47Updated 4 years ago
- ☆37Updated 3 years ago
- Default Detections for EDR☆96Updated 10 months ago
- Specialized tool to dump Position Independent Code.☆21Updated 4 years ago
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- ☆41Updated 2 years ago
- A set of tools for collecting forensic information☆26Updated 4 years ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 2 years ago
- (PoC) Tiny Excel BIFF8 Generator, to Embedded 4.0 Macros in xls files without Excel.☆42Updated 3 years ago
- ☆45Updated last year
- ☆32Updated 2 years ago
- Placeholder for my detection repo and misc detection engineering content☆43Updated last year
- Yara Rules for Modern Malware☆73Updated 10 months ago
- runsc loads 32/64 bit shellcode (depending on how runsc is compiled) in a way that makes it easy to load in a debugger. This code is base…☆36Updated 2 years ago
- ☆34Updated 2 years ago
- BloodCheck enables Red and Blue Teams to manage multiple Neo4j databases and run Cypher queries against a BloodHound dataset.☆17Updated 3 years ago
- C# Desktop GUI application that either performs YARA scan locally or prepares the scan in Active Directory domain environment with a few …☆32Updated 3 years ago
- Service Enumeration C# .NET Assembly☆59Updated 3 years ago