FourCoreLabs / TrustedInstallerPOCLinks
A simple go Proof of Concept to start a new shell as TrustedInstaller
☆57Updated last year
Alternatives and similar repositories for TrustedInstallerPOC
Users that are interested in TrustedInstallerPOC are comparing it to the libraries listed below
Sorting:
- A POC to disable TamperProtection and other Defender / MDE components☆224Updated last year
- The best powershell obfuscator ever made☆108Updated 3 months ago
- A stealthy, assembly-based tool for secure function address resolution, offering a robust alternative to GetProcAddress.☆73Updated last year
- This project is an implant framework designed for long term persistent access to Windows machines.☆110Updated last year
- Create and enumerate hidden desktops.☆90Updated last year
- DLL Hijacking and Mock directories technique to bypass Windows UAC security feature and getting high-level privileged reverse shell. Secu…☆42Updated last year
- PS-MOTW: PowerShell scripts to set / show / remove MOTW (Mark of the Web)☆38Updated last year
- ☆119Updated last year
- Collection of one-liners to bypass User Account Control (UAC) in Windows. These techniques exploit certain behavior in Windows applicatio…☆127Updated 6 months ago
- Collection of various malware techniques aimed at Windows through MinGW☆17Updated 10 months ago
- Nim process hollowing loader☆57Updated 11 months ago
- BSides Prishtina 2024 Malware Development and Persistence workshop☆88Updated last month
- ☆37Updated last year
- ☆146Updated last year
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆50Updated last year
- Fork of Get-InjectedThread - https://gist.github.com/jaredcatkinson/23905d34537ce4b5b1818c3e6405c1d2☆41Updated last year
- Small project to facilitate creation of .lnk payloads☆70Updated 2 years ago
- A command and control framework.☆52Updated 6 months ago
- A tool to verify and create PE Checksums for Portable Executable (PE) files.☆53Updated 2 years ago
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆46Updated last year
- a small wiper malware programmed in c#☆58Updated 2 years ago
- A tool to modify SCCM remote control settings on the client machine, enabling remote control without permission prompts or notifications.…☆94Updated 8 months ago
- A proof-of-concept for (CVE-2023-38840) that extracts plaintext master passwords from a locked Bitwarden vault.☆41Updated last year
- A CIA tradecraft technique to asynchronously detect when a process is created using WMI.☆135Updated last year
- Spoofing desktop login applications with WinForms and WPF☆176Updated last year
- ☆107Updated 8 months ago
- Analyse MSI files for vulnerabilities☆137Updated 10 months ago
- Utilities for obfuscating shellcode☆69Updated 4 months ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆95Updated 9 months ago
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆90Updated last year