FourCoreLabs / TrustedInstallerPOCLinks
A simple go Proof of Concept to start a new shell as TrustedInstaller
☆58Updated last year
Alternatives and similar repositories for TrustedInstallerPOC
Users that are interested in TrustedInstallerPOC are comparing it to the libraries listed below
Sorting:
- A POC to disable TamperProtection and other Defender / MDE components☆225Updated last year
- Nim process hollowing loader☆59Updated 2 weeks ago
- DLL Hijacking and Mock directories technique to bypass Windows UAC security feature and getting high-level privileged reverse shell. Secu…☆42Updated last year
- PS-MOTW: PowerShell scripts to set / show / remove MOTW (Mark of the Web)☆43Updated last year
- The best powershell obfuscator ever made☆109Updated last week
- Create and enumerate hidden desktops.☆90Updated last year
- Spoofing desktop login applications with WinForms and WPF☆176Updated last year
- A stealthy, assembly-based tool for secure function address resolution, offering a robust alternative to GetProcAddress.☆73Updated last year
- IoctlHunter is a command-line tool designed to simplify the analysis of IOCTL calls made by userland software targeting Windows drivers.☆103Updated last year
- Collection of one-liners to bypass User Account Control (UAC) in Windows. These techniques exploit certain behavior in Windows applicatio…☆128Updated 7 months ago
- ☆119Updated last year
- execute PE in memory Filelessly☆44Updated 6 months ago
- ☆146Updated last year
- This project is an implant framework designed for long term persistent access to Windows machines.☆110Updated last year
- Fork of Get-InjectedThread - https://gist.github.com/jaredcatkinson/23905d34537ce4b5b1818c3e6405c1d2☆42Updated last year
- Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and en…☆42Updated 10 months ago
- Go ransomware leveraging ChaCha20 and ECIES encryption with a web-based control panel.☆39Updated 3 months ago
- Analyse MSI files for vulnerabilities☆137Updated 11 months ago
- A Mythic Agent written in PIC C.☆196Updated 6 months ago
- A proof-of-concept for (CVE-2023-38840) that extracts plaintext master passwords from a locked Bitwarden vault.☆41Updated last year
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- ☆107Updated 9 months ago
- ☆76Updated last year
- ☆108Updated 2 years ago
- A CIA tradecraft technique to asynchronously detect when a process is created using WMI.☆135Updated last year
- Privileger is a tool to work with Windows Privileges☆136Updated 2 years ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆103Updated 4 months ago
- Make an executable run with TrustedInstaller permissions under SYSTEM account.☆40Updated 4 years ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆94Updated 10 months ago
- This is way to load a shellcode, and obfuscate it, so it avoids scantime detection.☆75Updated 3 months ago