ReversecLabs / lolcertsLinks
A repository of code signing certificates known to have been leaked or stolen, then abused by threat actors
☆375Updated last year
Alternatives and similar repositories for lolcerts
Users that are interested in lolcerts are comparing it to the libraries listed below
Sorting:
- The CIA's Marble Framework is designed to allow for flexible and easy-to-use obfuscation when developing tools.☆305Updated last year
- Nuke It From Orbit - remove AV/EDR with physical access☆263Updated 9 months ago
- A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you com…☆177Updated 4 months ago
- An ADCS honeypot to catch attackers in your internal network.☆310Updated last year
- ☆240Updated 3 months ago
- A repository of credential stealer formats☆227Updated 3 months ago
- Python tool to check rootkits in Windows kernel☆201Updated last month
- ☆189Updated last year
- A small program written in C that is designed to load 32/64-bit shellcode and allow for execution or debugging. Can also output PE files …☆163Updated last year
- FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is de…☆812Updated 7 months ago
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆132Updated 8 months ago
- A ProcessMonitor visualization application written in rust.☆183Updated 2 years ago
- A CIA tradecraft technique to asynchronously detect when a process is created using WMI.☆134Updated last year
- LOLAPPS is a compendium of applications that can be used to carry out day-to-day exploitation.☆191Updated 7 months ago
- A GUI and CLI tool for removing bloat from executables☆425Updated 2 months ago
- The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory C…☆256Updated last year
- Venom is a library that meant to perform evasive communication using stolen browser socket☆390Updated 2 years ago
- Canary Detection☆187Updated 4 months ago
- A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files☆128Updated last year
- Respotter is a Responder honeypot. Detect Responder in your environment as soon as it's spun up.☆197Updated last month
- The TTPForge is a Cybersecurity Framework for developing, automating, and executing attacker Tactics, Techniques, and Procedures (TTPs).☆397Updated last week
- Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.☆196Updated last week
- ☆136Updated 2 years ago
- A PoC ransomware sample to test out your ransomware response strategy.☆212Updated 5 months ago
- MaLDAPtive is a framework for LDAP SearchFilter parsing, obfuscation, deobfuscation and detection.☆309Updated last year
- A collection of tools, scripts and personal research☆146Updated last month
- A system administration or post-exploitation script to automatically extract the bitlocker recovery keys from a domain.☆378Updated last week
- A delicious, but malicious SSL-VPN server 🌮☆250Updated 3 weeks ago
- ☆104Updated 2 months ago
- ☆253Updated last year