RoomaSec / RmEye
戎码之眼是一个window上的基于att&ck模型的威胁监控工具.有效检测常见的未知威胁与已知威胁.防守方的利剑
☆475Updated last year
Related projects ⓘ
Alternatives and complementary repositories for RmEye
- 蓝队应急工具☆436Updated 5 months ago
- 检测绝大部分所谓的内存免杀马☆702Updated 2 years ago
- This is my FirstRepository☆309Updated last year
- 从零开始学免杀☆430Updated 2 years ago
- WatchAD2.0是一款针对域威胁的日志分析与监控系统☆382Updated 10 months ago
- cs4.4修改去特征狗狗版(美化ui,去除特征,自带bypass核晶截图等..)☆574Updated last year
- 重构了Cobaltstrike Beacon,行为对国内主流杀软免杀,支持4.1以上的版本。 A cobaltstrike Beacon bypass anti-virus, supports 4.1+ version.☆273Updated 2 years ago
- 寻找可利用的白文件☆458Updated 6 months ago
- dump lsass进程工具☆545Updated last year
- 一个经过实战考验的免杀程序生成器☆202Updated 9 months ago
- 助力每一位RT队员,快速生成免杀木马☆718Updated 7 months ago
- 创建隐藏计划任务,权限维持,Bypass AV☆517Updated 3 years ago
- Syscall免杀☆503Updated 5 months ago
- 使用多种WinAPI进行权限维持的CobaltStrike脚本,包含API设置系统服务,设置计划任务,管理用户等。☆530Updated 2 years ago
- 远程shellcode加载&权限维持+小功能☆291Updated 6 months ago
- Some demos to bypass EDRs or AVs by 78itsT3@m☆345Updated 2 years ago
- 红队行动中利用白利用、免杀、自动判断网络环境生成钓鱼可执行文件。☆362Updated 5 months ago
- C2-下一代RAT☆312Updated 3 months ago
- 一个拦截 XSSI & 识别Web蜜罐的Chrome扩展☆400Updated last year
- 通过jsp脚本扫描java web Filter/Servlet型内存马☆840Updated last year
- 一种另辟蹊径的免杀执行系统命令的木马☆491Updated 11 months ago
- 域控安全one for all☆705Updated 2 months ago
- 风暴免杀-bypass defender、360、vt☆175Updated last year
- JavaWeb MemoryShell Inject/Scan/Killer/Protect Research & Exploring☆589Updated 3 years ago
- avList - 杀软进程对应杀软名称☆396Updated 3 years ago
- 拿来即用的Tomcat7/8/9/10版本Listener/Filter/Servlet内存马,支持注入CMD内存马和冰蝎内存马☆487Updated 2 years ago
- 免杀shellcode加载器☆449Updated 3 years ago