SafeBreach-Labs / BITSInject
A one-click tool to inject jobs into the BITS queue (Background Intelligent Transfer Service), allowing arbitrary program execution as the NT AUTHORITY/SYSTEM account
☆99Updated 5 years ago
Alternatives and similar repositories for BITSInject:
Users that are interested in BITSInject are comparing it to the libraries listed below
- Tool to make in memory man in the middle☆124Updated 6 years ago
- Advanced Portable Executable File Analyzer And Disassembler 32 & 64 Bit☆100Updated 6 years ago
- Reflective Polymorphism☆104Updated 6 years ago
- Some sample code from my Zero Nights 2017 presentation.☆61Updated 7 years ago
- Open Source Office Malware Generation & Polymorphic Engine for Red Teams and QA testing☆95Updated 8 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆136Updated 7 years ago
- UAC 0Day all day!☆57Updated 7 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆86Updated 7 years ago
- NCC Group's analysis and exploitation of CVE-2017-8759 along with further refinements☆96Updated 7 years ago
- ☆134Updated 6 years ago
- x86-64 Windows shellcode that recreates the Jurassic Park hacking scene (Ah, ah, ah... you didn't' say the magic word!)☆84Updated 4 years ago
- Simple DDE object detector☆56Updated 7 years ago
- A tiny PoC to inject and execute code into explorer.exe with WM_SETTEXT+WM_COPYDATA+SetThreadContext☆50Updated 7 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆55Updated 7 years ago
- Another Repo of Malware. Enjoy. <3☆59Updated 6 years ago
- Mal Tindex is an Open Source tool for indexing binaries and help attributing malware campaigns☆67Updated 7 years ago
- ☆52Updated 6 years ago
- Various config files obtained during malware analysis☆67Updated 6 years ago
- VBS Reversed TCP Meterpreter Stager☆87Updated 7 years ago
- An automated collection and analysis of malware from my honeypots.☆25Updated 7 years ago
- ☆114Updated 7 years ago
- ☆229Updated 7 years ago
- Proof-of-concept two-stage dropper generator that uses bits from external sources☆99Updated 7 years ago
- ☆97Updated 9 years ago
- PoC for persisting .NET payloads in Windows Notification Facility (WNF) state names using low-level Windows Kernel API calls.☆151Updated 5 years ago
- All materials from our Black Hat 2018 "Subverting Sysmon" talk☆136Updated 6 years ago
- ☆59Updated 6 years ago
- some pocs for antivirus evasion☆131Updated last year
- ☆74Updated 2 years ago
- Exploit Win10Pcap Driver to enable some Privilege in our process token ( local Privilege escalation )☆60Updated 9 years ago