Hamid-K / stalksnet
A few STUXNET samples and live traffic captures from July 2010 while many stuxnet implants were still operational.
☆24Updated 6 months ago
Alternatives and similar repositories for stalksnet:
Users that are interested in stalksnet are comparing it to the libraries listed below
- A proof-of-concept shellcode loader that leverages AI/ML face recognition models to verify the identity of a user on a target system☆37Updated 4 months ago
- OffensiveCon 2024 Repo, contains PoCs and materials for talk "UEFI and the Task of the Translator"☆42Updated 10 months ago
- Lena's scripts/code/resources for malware analysis☆25Updated 9 months ago
- BINARLY Research Tools and PoCs☆36Updated 6 months ago
- ☆18Updated last week
- Debug-assisted Argument Spoofing☆14Updated 5 months ago
- Aplos an extremely simple fuzzer for Windows binaries.☆68Updated last month
- Scan files for potential threats while leveraging AMSI (Antimalware Scan Interface) and Windows Defender. By isolating malicious content.☆14Updated 2 months ago
- ☆23Updated 10 months ago
- Folder Or File Delete to Get System Shell on Current Session Desktop☆38Updated 2 months ago
- ☆28Updated 10 months ago
- ☆29Updated last month
- Mythic C2 wrapper for NimSyscallPacker☆23Updated 2 weeks ago
- POC of GITHUB simple C2 in rust☆54Updated 2 months ago
- Enable or Disable TokenPrivilege(s)☆13Updated 10 months ago
- A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders Stardust☆84Updated 11 months ago
- This repo for Windows x32-x64 Kernel/Driver/User Mode Exploitation writeups and exploits☆23Updated 10 months ago
- Situational Awareness script to identify how and where to run implants☆48Updated 3 months ago
- Proof-of-concept modular implant platform leveraging v8☆50Updated 3 weeks ago
- Ansible build for Afl++ Frida-Mode☆23Updated 9 months ago
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆76Updated 7 months ago
- The Frida-Jit-unPacker aims at helping researchers and analysts understand the behavior of packed malicious .NET samples.☆56Updated 11 months ago
- BOF for C2 framework☆40Updated 4 months ago
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆26Updated last month
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆106Updated 6 months ago
- ☆29Updated 3 months ago
- Docker container for running CobaltStrike 4.10☆36Updated 6 months ago
- Linux CS bypass technique☆29Updated last month
- Windows Administrator level Implant.☆49Updated 5 months ago
- A red teaming attack paradigm against AI Agents☆28Updated 2 weeks ago