Exploit-install / DKMC
DKMC - Dont kill my cat - Malicious payload evasion tool
☆21Updated 7 years ago
Alternatives and similar repositories for DKMC:
Users that are interested in DKMC are comparing it to the libraries listed below
- The source code of the SLAE assignments documented at https://rastating.github.io/☆23Updated 6 years ago
- Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the in…☆19Updated 4 years ago
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 4 years ago
- Work in Progress repo☆14Updated 5 years ago
- Ransoblin (Ransomware Bokoblin)☆17Updated 4 years ago
- ☆25Updated 6 years ago
- ☆23Updated 9 years ago
- Extract the password of the current user from flow (keylogger, config file, ..) Use SSPI to get a valid NTLM challenge/response and test …☆58Updated 5 years ago
- Run Any Native PE file as a memory ONLY Payload , most likely as a shellcode using hta attack vector which interacts with Powershell.☆27Updated 7 years ago
- Fuzzing Framework☆10Updated 7 years ago
- Retrieve the IIS Application Pool Credentials. Relies on the WebAdministration PowerShell Module.☆14Updated 7 years ago
- Forked and updated with some additional features over the original☆16Updated 3 years ago
- BlueKeep powershell scanner (based on c# code)☆38Updated 5 years ago
- A cross platform tool for verifying credentials and executing single commands☆32Updated 5 years ago
- Python script to patch the reflective stub in a DLL☆24Updated 7 years ago
- Create COM Objects backed by Scripts, not DLLs☆9Updated 7 years ago
- ☆28Updated 7 years ago
- AMSI detection PoC☆31Updated 4 years ago
- Files related to my presentation at SigSegV2 conference in 2019. You can find related papers on my blog☆13Updated 5 years ago
- A tool to sync mythic events with ghostwriter oplog.☆12Updated 3 months ago
- Gives context to a system. Uses EQGRP shadow broker leaked list to give some descriptions to processes.☆43Updated 7 years ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆51Updated 6 years ago
- Win32k Elevation of Privilege PocUpdated 5 years ago
- A Canary which fires when uninstalled☆34Updated 3 years ago
- ☆16Updated 3 years ago
- A repository where I share my injection implemintations☆29Updated 4 years ago
- Sp00fer blog post -☆26Updated 2 years ago
- Babel-Shellfish deobfuscates and scans Powershell scripts on real-time right before each line execution.☆42Updated 6 years ago
- Microsoft Applocker evasion tool☆38Updated 5 years ago
- ☆12Updated 3 years ago