NVISOsecurity / blogposts
A repo to house files for our blogposts on blog.nviso.eu
☆65Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for blogposts
- Simple HTTP async comms using standard GET/POST requests☆29Updated this week
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆62Updated 2 years ago
- (PoC) Tiny Excel BIFF8 Generator, to Embedded 4.0 Macros in xls files without Excel.☆42Updated 3 years ago
- ☆56Updated 3 years ago
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- subTee gists code backups☆37Updated 6 years ago
- all credits go to @mgeeky☆58Updated 3 years ago
- ☆41Updated 2 years ago
- ☆51Updated 3 years ago
- Cobalt Strike BOF to list Windows Pipes & return their Owners & DACL Permissions☆50Updated 2 years ago
- Tradecraft Development Fundamentals☆40Updated 3 years ago
- Smart Card PIN swiping DLL☆74Updated 4 years ago
- IOXIDResolver from AirBus Security/PingCastle☆45Updated 3 years ago
- .NET project for installing Persistence☆64Updated 2 years ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆86Updated 2 years ago
- GhostLoader - AppDomainManager - Injection - 攻壳机动队☆51Updated 4 years ago
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆33Updated 3 years ago
- A little implant which SSH's back with a shell☆36Updated 2 years ago
- Proof of concept Beacon Object File (BOF) that attempts to detect userland hooks in place by AV/EDR☆97Updated 3 years ago
- A BOF port of the research of @thefLinkk and @codewhitesec☆94Updated 3 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆65Updated 4 months ago
- A PoC~ish of https://elastic.github.io/security-research/malware/2022/01/01.operation-bleeding-bear/article/☆30Updated 8 months ago
- Remove API hooks from a Beacon process.☆54Updated 2 years ago
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆90Updated 2 years ago
- Generate droppers with encrypted payloads automatically.☆54Updated 3 years ago
- Abusing Reddit API to host the C2 traffic, since most of the blue-team members use Reddit, it might be a great way to make the traffic lo…☆25Updated last year
- Unchain AMSI by patching the provider’s unmonitored memory space☆88Updated last year
- Grab unsaved Notepad contents with a Beacon Object File☆48Updated 2 years ago
- Spin up RedTeam infrastructure on AWS via Ansible☆59Updated 4 years ago