ReversecLabs / lolcertsLinks
A repository of code signing certificates known to have been leaked or stolen, then abused by threat actors
☆389Updated last year
Alternatives and similar repositories for lolcerts
Users that are interested in lolcerts are comparing it to the libraries listed below
Sorting:
- Nuke It From Orbit - remove AV/EDR with physical access☆271Updated last year
- The CIA's Marble Framework is designed to allow for flexible and easy-to-use obfuscation when developing tools.☆318Updated 2 years ago
- A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you com…☆180Updated 8 months ago
- ☆250Updated 7 months ago
- Python tool to check rootkits in Windows kernel☆206Updated 5 months ago
- A repository of credential stealer formats☆242Updated 7 months ago
- Repository of Yara Rules☆138Updated 2 weeks ago
- ☆189Updated 2 years ago
- An ADCS honeypot to catch attackers in your internal network.☆321Updated last year
- LOLAPPS is a compendium of applications that can be used to carry out day-to-day exploitation.☆195Updated 11 months ago
- ☆156Updated 9 months ago
- A collection of tools, scripts and personal research☆155Updated this week
- Analyse your malware to surgically obfuscate it☆517Updated last month
- A ProcessMonitor visualization application written in rust.☆184Updated 2 years ago
- Canary Detection☆187Updated 3 months ago
- Tools for analyzing EDR agents☆276Updated last year
- God Mode Detection Rules☆135Updated last year
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆143Updated last month
- Wordlist to crack .zip-file password☆207Updated 3 years ago
- MaLDAPtive is a framework for LDAP SearchFilter parsing, obfuscation, deobfuscation and detection.☆336Updated last year
- Venom is a library that meant to perform evasive communication using stolen browser socket☆396Updated 2 years ago
- Okta Verify and Okta FastPass Abuse Tool☆339Updated last year
- Retired TrustedSec Capabilities☆248Updated 3 weeks ago
- Respotter is a Responder honeypot. Detect Responder in your environment as soon as it's spun up.☆197Updated 3 months ago
- A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files☆128Updated last year
- Segugio allows the execution and tracking of critical steps in the malware detonation process, from clicking on the first stage to extrac…☆151Updated last year
- A system administration or post-exploitation script to automatically extract the bitlocker recovery keys from a domain.☆386Updated 2 weeks ago
- FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is de…☆816Updated 11 months ago
- ☆301Updated last year
- Scan vulnerable drivers on Windows with loldrivers.io☆186Updated 2 years ago