ProcessusT / ETWMonitor
Windows notifier tool that detects suspicious connections by monitoring ETW event logs
☆117Updated 2 years ago
Alternatives and similar repositories for ETWMonitor:
Users that are interested in ETWMonitor are comparing it to the libraries listed below
- VULNSPY regularly retrieves the latest alerts published by the CERT-FR and the related vulnerabilities with their CVSS score and allows y…☆38Updated 2 years ago
- The ldap2json script allows you to extract the whole LDAP content of a Windows domain into a JSON file.☆126Updated 3 months ago
- Identify the accounts most vulnerable to dictionary attacks☆111Updated 6 months ago
- ☆103Updated last year
- Youtube as C2 channel - Control Windows systems uploading QR videos to Youtube☆82Updated 7 months ago
- Obfuscate the bytes of your payload with an association dictionary☆32Updated 3 months ago
- Assess the security of your Active Directory with few or all privileges.☆261Updated 2 weeks ago
- Scraping Kit is made up of several tools for scraping services for keywords, useful for initial enumeration of Domain Controllers or if y…☆97Updated last year
- A system administration or post-exploitation script to automatically extract the bitlocker recovery keys from a domain.☆361Updated 3 weeks ago
- ☆173Updated 2 months ago
- A security assessment tool for analyzing Active Directory Group Policy Objects (GPOs) to identify misconfigurations and vulnerabilities☆193Updated last month
- A python script to automatically list vulnerable Windows ACEs/ACLs.☆48Updated 2 months ago
- RDPCredentialStealer it's a malware that steal credentials provided by users in RDP using API Hooking with Detours in C++☆240Updated last year
- Scripts permettant de contourner la protection antivirale de Windows Defender via la technique de Direct Syscalls avec une injection de s…☆27Updated 2 years ago
- Outil de récupération automatique des données AZure / Automated tool for dumping Azure configuration data☆18Updated last week
- Active Directory delegation management tool☆289Updated last year
- Retrieve and display information about active user sessions on remote computers. No admin privileges required.☆177Updated 6 months ago
- Guide journalisation Microsoft☆60Updated 7 months ago
- A collection of all my personal cheat sheets and guides as I progress through my career in offensive security.☆118Updated 3 weeks ago
- Updated version of PowerDNS by @domchell. Adds support for transfers over DNS A records and a few other useful features.☆82Updated last year
- Ransomware simulator written in C#☆36Updated 2 years ago
- Docker images of the Exegol project☆98Updated this week
- ☆296Updated 3 months ago
- MSI Dump - a tool that analyzes malicious MSI installation packages, extracts files, streams, binary data and incorporates YARA scanner.☆204Updated last year
- GolenGMSA tool for working with GMSA passwords☆139Updated 10 months ago
- Audit tool for Active Directory. Automates a lot of checks from a pentester perspective.☆161Updated 4 months ago
- Decrypt Veeam database passwords☆156Updated last year
- Continuous password spraying tool☆128Updated last week