Hubbl3 / ThreatCheckLinks
Identifies the bytes that Microsoft Defender / AMSI Consumer flags on.
☆12Updated last year
Alternatives and similar repositories for ThreatCheck
Users that are interested in ThreatCheck are comparing it to the libraries listed below
Sorting:
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆52Updated last year
- ☆49Updated 2 years ago
- in-process powershell runner for BRC4☆48Updated 2 years ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated last year
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆29Updated 2 years ago
- Scripts to interact with Microsoft Graph APIs☆44Updated last year
- Mythic C2 wrapper for NimSyscallPacker☆25Updated 9 months ago
- A lightweight HTTP/HTTPS reverse proxy for efficient, policy-based traffic filtering and redirection.☆45Updated 2 years ago
- ☆38Updated 9 months ago
- ☆19Updated last year
- Extract registry and NTDS secrets from local or remote disk images☆45Updated 9 months ago
- .NET port of Leron Gray's azbelt tool.☆26Updated 2 years ago
- ☆61Updated 2 years ago
- malleable profile generator GUI for Havoc☆55Updated 2 years ago
- Modified version of Impacket to use dynamic NTLMv2 Challenge/Response☆19Updated 3 years ago
- Enumerate the Domain for Readable and Writable Shares☆23Updated last month
- ☆15Updated 2 years ago
- Minimal Windows Service Template for demonstrating privilege escalation via weak service executable permissions☆14Updated 3 years ago
- Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by …☆24Updated 2 years ago
- ☆44Updated last year
- Brute Ratel LDAP filtering and sorting tool. Easily take BR log output and pull hostnames for ease of use with other red team tooling. Su…☆39Updated 2 years ago
- Collection of shellcode injection techniques packed in a D/Invoke weaponized DLL☆23Updated 3 years ago
- All my POC related to malware development☆14Updated last year
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆58Updated 3 years ago
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆77Updated 2 years ago
- Reverse-HTTP Redirector via DigitalOcean Apps Platform☆30Updated 2 years ago
- Validates priv escalation of AD trusts☆48Updated 9 months ago
- Scripts I use to deploy Havoc on Linode and setup categorization and SSL☆42Updated last year
- Items related to the RedELK workshop given at security conferences☆29Updated 2 years ago
- ☆26Updated 10 months ago