Offensive-Panda / D3MPSEC
"D3MPSEC" is a memory dumping tool designed to extract memory dump from Lsass process using various techniques, including direct system calls, randomized procedures, and prototype name obfuscation. Its primary purpose is to bypass both static and dynamic analysis techniques commonly employed by security measures.
☆24Updated 6 months ago
Alternatives and similar repositories for D3MPSEC:
Users that are interested in D3MPSEC are comparing it to the libraries listed below
- Creation and removal of Defender path exclusions and exceptions in C#.☆30Updated last year
- Cobalt Strike UDRL for memory scanner evasion.☆48Updated last year
- Copy metadata and digital signatures information from one Windows executable to another using Wine on a non-Windows platform☆16Updated 11 months ago
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆30Updated last year
- This project is an EDRSandblast fork, adding some features and custom pieces of code.☆22Updated last year
- DFSCoerce exe revisited version with custom authentication☆38Updated last year
- ☆53Updated 5 months ago
- A Cobalt Strike payload generator and lateral movement aggressor script which places Beacon shellcode into a custom shellcode loader☆19Updated 5 months ago
- Rewrite to fit my needs☆27Updated 8 months ago
- ☆20Updated 9 months ago
- SAM Dumping in C#☆44Updated 2 months ago
- A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and re…☆21Updated last year
- BOF for C2 framework☆40Updated 4 months ago
- ☆36Updated 2 years ago
- Section-based payload obfuscation technique for x64☆59Updated 7 months ago
- Slides and POC demo for my talk at Divizion Zero on EDR evasion titled "Evasion Adventures"☆26Updated 2 years ago
- EmbedExeLnk by x86matthew modified by d4rkiZ☆35Updated last year
- ☆52Updated 3 months ago
- string/file/shellcode encryptor using AES/XOR☆11Updated last year
- Modified versions of the Cobalt Strike Process Injection Kit☆93Updated last year
- ☆18Updated 5 months ago
- A simple PoC of injection shellcode into a remote process and get the output using namepipe☆42Updated last year
- Encode shellcode into dictionary words for evasion and entropy reduction☆23Updated 4 months ago
- ☆48Updated last year
- A Dynamic MSBuild task to help with minor obfuscation of C# Binaries to evade static signatures on each compilation☆36Updated last year
- Using LNK files and user input simulation to start processes under explorer.exe