MzHmO / USB-Monitor
USB Monitor is a simple C# program that uses WMI to track information about newly connected and disconnected USB devices
☆22Updated last year
Alternatives and similar repositories for USB-Monitor:
Users that are interested in USB-Monitor are comparing it to the libraries listed below
- API Hammering with C++20☆45Updated 2 years ago
- Windows AppLocker Driver (appid.sys) LPE☆48Updated 6 months ago
- Proof of Concept example for abusing Process Hacker 2 (v2.39.124)☆21Updated 3 months ago
- These are the slide decks and source code for Brute Ratel Seminar conducted on 24th August 2023. The youtube video for the seminar can be…☆19Updated last year
- An example of COM hijacking using a proxy DLL.☆27Updated 3 years ago
- A (quite) simple steganography algorithm to hide shellcodes within bitmap image.☆21Updated 9 months ago
- Simple PoC to locate hooked functions by EDR in ntdll.dll☆36Updated last year
- Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle…☆15Updated 2 years ago
- Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver☆50Updated last year
- Splitting and executing shellcode across multiple pages☆99Updated last year
- ☆29Updated 2 months ago
- Your NTDLL vaccine from modern direct syscall methods.☆35Updated 2 years ago
- e(X)tensiable (Rust) Malware Toolkit: (Soon!) Full Featured Rust C2 Framework with Awesome Features!☆23Updated 6 months ago
- Exploiting the KsecDD Windows driver through Server Silos☆50Updated 3 months ago
- A pure C version of SymProcAddress☆25Updated 11 months ago
- ☆36Updated 2 years ago
- https://github.com/janoglezcampos/c_syscalls with the ASM rewritten by myself for Visual Studio's Compiler.☆30Updated 7 months ago
- 🗡️ A multi-user malleable C2 framework targeting Windows. Written in C++ and Python☆43Updated 11 months ago
- One Click Tool to Scan All the Enabled Protection of current Windows NT Kernel☆43Updated last year
- A stealthy, assembly-based tool for secure function address resolution, offering a robust alternative to GetProcAddress.☆72Updated 11 months ago
- DLL Unlinking from InLoadOrderModuleList, InMemoryOrderModuleList, InInitializationOrderModuleList, and LdrpHashTable☆57Updated last year
- 「⚙️」Detect which native Windows API's (NtAPI) are being hooked☆38Updated 2 months ago
- Herpaderply Hollowing - a PE injection technique, hybrid between Process Hollowing and Process Herpaderping☆51Updated 2 years ago
- A firebeam plugin that exploits the CVE-2024-26229 vulnerability to perform elevation of privilege from a unprivileged user☆36Updated 6 months ago
- ☆36Updated this week
- ☆29Updated last year
- C# API for Nidhogg rootkit☆17Updated 9 months ago
- Giga-byte Control Center (GCC) is a software package designed for improved user experience of Gigabyte hardware, often found in gaming an…☆31Updated last year
- ☆27Updated last year
- Red Team Operation's Defense Evasion Technique.☆51Updated 8 months ago