Helixo32 / DetectHooksLinks
Detect userland hooks placed by AV/EDR
☆28Updated 2 years ago
Alternatives and similar repositories for DetectHooks
Users that are interested in DetectHooks are comparing it to the libraries listed below
Sorting:
- ☆61Updated last year
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆50Updated last year
- Sniffing files generator☆59Updated 9 months ago
- ☆44Updated last year
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated last year
- in-process powershell runner for BRC4☆48Updated 2 years ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated last year
- ☆49Updated 2 years ago
- PowerShell Implementation of ADFSDump to assist with GoldenSAML☆37Updated 7 months ago
- Scripts to interact with Microsoft Graph APIs☆44Updated last year
- ☆59Updated last year
- Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level☆26Updated 3 years ago
- ☆47Updated 2 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆70Updated last year
- ☆38Updated 8 months ago
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆88Updated 2 years ago
- string/file/shellcode encryptor using AES/XOR☆11Updated 2 years ago
- Docker container for running CobaltStrike 4.10☆37Updated last year
- A pure C version of SymProcAddress☆30Updated last year
- ☆23Updated last year
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆58Updated 3 years ago
- A lightweight HTTP/HTTPS reverse proxy for efficient, policy-based traffic filtering and redirection.☆45Updated 2 years ago
- malleable profile generator GUI for Havoc☆55Updated 2 years ago
- ☆26Updated 9 months ago
- Deploy a phishing infrastructure on the fly.☆78Updated 11 months ago
- Collection of shellcode injection techniques packed in a D/Invoke weaponized DLL☆23Updated 3 years ago
- ☆52Updated last year
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆94Updated 5 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆92Updated last year
- This workshop is designed to provide you with a solid understanding of IronPython, its integration with the .NET framework, and how it ca…☆42Updated last year