SafeBreach-Labs / AltFS
The Alternative Fileless File System
☆55Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for AltFS
- A one-click tool to inject jobs into the BITS queue (Background Intelligent Transfer Service), allowing arbitrary program execution as th…☆98Updated 5 years ago
- ☆51Updated 6 years ago
- Reflective Polymorphism☆104Updated 6 years ago
- Ps1jacker is a tool for generating COM Hijacking payload.☆61Updated 6 years ago
- All materials from our Black Hat 2018 "Subverting Sysmon" talk☆136Updated 6 years ago
- windows-operating-system-archaeology @Enigma0x3 @subTee☆44Updated 7 years ago
- Listen for usb devices and automatically submit all files on device to cuckoo☆12Updated 7 years ago
- Sysmon config for both Windows and Linux Devices. Windows one is a bit dated☆54Updated 4 months ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆85Updated 7 years ago
- gpocheck☆30Updated 3 months ago
- Pypykatz agent implemented in .NET☆85Updated 5 years ago
- SilkETW & SilkService☆40Updated 5 years ago
- ☆97Updated 8 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Updated 5 years ago
- Community-based integrated malware identification system☆82Updated last year
- Advanced Portable Executable File Analyzer And Disassembler 32 & 64 Bit☆99Updated 5 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- ☆59Updated 5 years ago
- Tool for injecting a "TCP Relay" managed assembly into unmanaged processes☆116Updated 5 years ago
- hopefully a source-to-source deobfuscator, aiming at deobfuscating common scripts languages such as Powershell, VBA and Javascript. Curre…☆40Updated 5 years ago
- All the Power with no Shell☆36Updated 2 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆133Updated 7 years ago
- Endpoint monitoring stack.☆18Updated 9 years ago
- x86-64 Windows shellcode that recreates the Jurassic Park hacking scene (Ah, ah, ah... you didn't' say the magic word!)☆82Updated 4 years ago
- Sandbox feature upgrade with the help of wrapped samples☆75Updated 6 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- Loads the AutoIt DLL and PowerShell assemblies into memory and executes the specified keystrokes☆60Updated 7 years ago