FourCoreLabs / TrustedInstallerPOCLinks
A simple go Proof of Concept to start a new shell as TrustedInstaller
☆60Updated 2 years ago
Alternatives and similar repositories for TrustedInstallerPOC
Users that are interested in TrustedInstallerPOC are comparing it to the libraries listed below
Sorting:
- Nim process hollowing loader☆60Updated 4 months ago
- A POC to disable TamperProtection and other Defender / MDE components☆232Updated last year
- Create and enumerate hidden desktops.☆88Updated last year
- A stealthy, assembly-based tool for secure function address resolution, offering a robust alternative to GetProcAddress.☆73Updated last year
- Advanced dynamic malware analysis tool.☆83Updated last year
- SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and up…☆254Updated last month
- Go ransomware leveraging ChaCha20 and ECIES encryption with a web-based control panel.☆45Updated 6 months ago
- This project is an implant framework designed for long term persistent access to Windows machines.☆110Updated 2 years ago
- DLL Hijacking and Mock directories technique to bypass Windows UAC security feature and getting high-level privileged reverse shell. Secu…☆44Updated last year
- Dynamic shellcode loader with sophisticated evasion capabilities☆253Updated last month
- ☆26Updated 8 months ago
- The best powershell obfuscator ever made☆117Updated 3 months ago
- IoctlHunter is a command-line tool designed to simplify the analysis of IOCTL calls made by userland software targeting Windows drivers.☆104Updated last year
- This is way to load a shellcode, and obfuscate it, so it avoids scantime detection.☆87Updated 6 months ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- ☆120Updated last year
- Analyse MSI files for vulnerabilities☆138Updated last year
- PS-MOTW: PowerShell scripts to set / show / remove MOTW (Mark of the Web)☆48Updated 2 years ago
- execute PE in memory Filelessly☆48Updated 9 months ago
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆50Updated last year
- PoC showcasing new DarkGate Install Script retrieval technique via DNS TXT Record☆43Updated last year
- A CIA tradecraft technique to asynchronously detect when a process is created using WMI.☆137Updated last year
- Collection of one-liners to bypass User Account Control (UAC) in Windows. These techniques exploit certain behavior in Windows applicatio…☆141Updated 10 months ago
- ☆108Updated last year
- ☆132Updated 2 years ago
- Ransomware written in go, encrypt - decrypt.☆30Updated 6 months ago
- Virus.xcheck is a Python tool designed to bulk verify the existence of file hashes in the Virus Exchange database and fetch download URLs…☆56Updated last month
- ☆107Updated 2 years ago
- ☆164Updated 8 months ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆101Updated 7 months ago