Stuuxx / awesome-persistenceLinks
Persistence techniques for windows.
☆19Updated 2 years ago
Alternatives and similar repositories for awesome-persistence
Users that are interested in awesome-persistence are comparing it to the libraries listed below
Sorting:
- A payload delivery system which embeds payloads in an executable's icon file!☆74Updated last year
- Tool for obtaining information about PPL processes☆16Updated last year
- Python3 tool to perform password spraying using RDP☆16Updated 2 years ago
- EvtPsst☆55Updated 2 years ago
- ☆60Updated last year
- Demoting PPL anti-malware services to less than a guest user☆63Updated 9 months ago
- Your NTDLL vaccine from modern direct syscall methods.☆36Updated 3 years ago
- freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package☆33Updated 2 years ago
- Tartocitron is a repo to have fun with malwares and the Rust language. This repo provides working examples of dropper written in Rust.☆11Updated 3 years ago
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- ☆37Updated 2 years ago
- DLL Unlinking from InLoadOrderModuleList, InMemoryOrderModuleList, InInitializationOrderModuleList, and LdrpHashTable☆57Updated last year
- A Large Action Model designed to operate on MacOS or Windows which interacts with common C2 interfaces such as Cobalt Strike, Havoc, or B…☆26Updated last year
- malleable profile generator GUI for Havoc☆55Updated 2 years ago
- Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)☆40Updated 2 years ago
- UAC Bypass using CMSTP in Rust☆33Updated 10 months ago
- Items related to the RedELK workshop given at security conferences☆29Updated 2 years ago
- ☆18Updated last year
- API Hammering with C++20☆49Updated 3 years ago
- Windows AppLocker Driver (appid.sys) LPE☆66Updated last year
- A utility that can be used to launch an executable with a DLL injected☆19Updated last year
- ☆30Updated 2 months ago
- This repo for Windows x32-x64 Kernel/User Mode Exploitation writeups and exploits☆24Updated 2 weeks ago
- idk man this was the default github name☆35Updated 2 years ago
- ☆20Updated last month
- single-threaded event driven sleep obfuscation poc for linux☆35Updated 4 months ago
- Offensive Assembly code snippets.☆12Updated 2 years ago
- ☆58Updated last year
- process hollowing variant using NtCreateSection + NtMapViewOfSection + ResumeThread☆31Updated 3 years ago
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆77Updated last year