SafeBreach-Labs / CortexVortex
☆72Updated 6 months ago
Related projects ⓘ
Alternatives and complementary repositories for CortexVortex
- BadExclusionsNWBO is an evolution from BadExclusions to identify folder custom or undocumented exclusions on AV/EDR☆72Updated 9 months ago
- a short C code POC to gain persistence and evade sysmon event code registry (creation, update and deletion) REG_NOTIFY_CLASS Registry Cal…☆51Updated last year
- Lateral Movement via the .NET Profiler☆76Updated 5 months ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆86Updated 2 years ago
- Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement☆88Updated last month
- I have documented all of the AMSI patches that I learned till now☆68Updated last year
- ☆67Updated 3 months ago
- ☆73Updated last year
- ☆61Updated 2 years ago
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆53Updated 7 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆83Updated 5 months ago
- Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post☆86Updated 2 years ago
- ☆83Updated 6 months ago
- ☆92Updated 9 months ago
- Simple BOF to read the protection level of a process☆104Updated last year
- To audit the security of read-only domain controllers☆113Updated 11 months ago
- Tool for playing with Windows Access Token manipulation.☆52Updated last year
- Some of the presentations, workshops, and labs I gave at public conferences.☆29Updated 2 months ago
- Implant drop-in for EDR testing☆128Updated last year
- A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders Stardust☆82Updated 7 months ago
- Do some DLL SideLoading magic☆75Updated last year
- ☆28Updated 5 months ago
- ☆96Updated last year
- ☆83Updated 2 years ago
- Slide decks and/or materials from conference presentations☆54Updated 2 years ago
- Python tool to interact with WMI StdRegProv☆43Updated this week
- ☆103Updated 6 months ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆73Updated last month
- ☆59Updated 3 months ago