KnicKnic / native-powershellLinks
A C DLL that can control powershell
☆48Updated 5 years ago
Alternatives and similar repositories for native-powershell
Users that are interested in native-powershell are comparing it to the libraries listed below
Sorting:
- A Patchless AMSI Bypass Technique using VEH²☆29Updated 4 months ago
- Submission, compilation and execution of C# code snippets, using an unmanaged CLR Host☆53Updated 10 years ago
- A C# implementation of dumping credentials from Windows Credential Manager☆60Updated 2 years ago
- Read ETW Provider events. Inspired by ETWExplorer by Pavel Yosifovich☆17Updated last year
- Info on how to use Kerberos KDC on a non-domain joined host☆47Updated last year
- early cascade injection PoC based on Outflanks blog post, in rust☆60Updated 11 months ago
- Repository of Microsoft Driver Block Lists based off of OS-builds☆40Updated last year
- Reflective DLL self-loading as a library☆23Updated 6 months ago
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆66Updated 2 years ago
- Safely manage the unloading of DLLs that have been hooked into a process. Context: https://github.com/KNSoft/KNSoft.SlimDetours/discussio…☆78Updated 4 months ago
- Just another ntdll unhooking using Parun's Fart technique☆75Updated 2 years ago
- Self Delete DLL☆23Updated last year
- Remap ntdll.dll using only NTAPI functions with a suspended process☆26Updated 6 months ago
- Playing with packets in C#☆15Updated last year
- example using NtCreateUserProcess in rust☆19Updated 9 months ago
- ☆32Updated 2 weeks ago
- A simple Linux in-memory .so loader☆33Updated 2 years ago
- Code samples that serve as references for Windows API functions☆35Updated last year
- A reimplementation of Cobalt Strike's Beacon Object File (BOF) Loader☆61Updated last year
- List the ETW provider(s) in the registration table of a process.☆63Updated 2 years ago
- Example of building an application verifer DLL☆49Updated last year
- ☆83Updated last year
- Load and execute a common object file format (COFF) in the current process☆31Updated last year
- Tool for playing with Windows Access Token manipulation.☆55Updated 2 years ago
- Fork of Get-InjectedThread - https://gist.github.com/jaredcatkinson/23905d34537ce4b5b1818c3e6405c1d2☆46Updated 2 years ago
- A persistant Windows Service Proof of Concept, where the Service will run after Restart or Shutdown, and invoke a given software executab…☆38Updated 2 years ago
- ☆29Updated 2 years ago
- Modify managed functions from unmanaged code☆52Updated last year
- Simple and sane compression wrapper library.☆18Updated 3 years ago
- Enable EFS service as low priv user (PE & BOF)☆20Updated 3 months ago