Helixo32 / DetectHooksLinks
Detect userland hooks placed by AV/EDR
☆28Updated 2 years ago
Alternatives and similar repositories for DetectHooks
Users that are interested in DetectHooks are comparing it to the libraries listed below
Sorting:
- ☆60Updated last year
- in-process powershell runner for BRC4☆48Updated 2 years ago
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆50Updated last year
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated last year
- ☆44Updated last year
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated last year
- ☆49Updated 2 years ago
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆89Updated 4 months ago
- ☆52Updated last year
- Scripts to interact with Microsoft Graph APIs☆44Updated last year
- malleable profile generator GUI for Havoc☆55Updated 2 years ago
- ☆47Updated 2 years ago
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆88Updated 2 years ago
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆64Updated 10 months ago
- Sniffing files generator☆59Updated 8 months ago
- ☆23Updated last year
- PowerShell Implementation of ADFSDump to assist with GoldenSAML☆37Updated 6 months ago
- A lightweight HTTP/HTTPS reverse proxy for efficient, policy-based traffic filtering and redirection.☆45Updated 2 years ago
- A Python script for creating `.lnk` (shortcut) files with embedded encoded data and packaging them into ZIP archives.☆88Updated 10 months ago
- This workshop is designed to provide you with a solid understanding of IronPython, its integration with the .NET framework, and how it ca…☆42Updated last year
- ☆26Updated 8 months ago
- Items related to the RedELK workshop given at security conferences☆29Updated 2 years ago
- Situational Awareness script to identify how and where to run implants☆67Updated 11 months ago
- ☆65Updated last year
- This repo hosts a poc of how to execute F# code within an unmanaged process☆70Updated last year
- Find DLLs with RWX section☆80Updated 2 years ago
- GetSystem-LCI is a PowerShell script to escalate privileges from Administrator to NT AUTHORITY\SYSTEM by abusing LanguageComponentsInstal…☆34Updated 11 months ago
- ☆37Updated 7 months ago
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated 2 years ago
- Python3 rewrite of AsOutsider features of AADInternals☆57Updated 3 months ago