Powershell Event Tracing Toolbox
☆77Mar 21, 2022Updated 3 years ago
Alternatives and similar repositories for ntTraceControl
Users that are interested in ntTraceControl are comparing it to the libraries listed below
Sorting:
- AD Live changes viewer☆36Feb 25, 2023Updated 3 years ago
- Microsoft 365 Defender Hunting via PowerShell.☆14Feb 8, 2022Updated 4 years ago
- The hidden mstsc recorder player☆27Mar 9, 2020Updated 6 years ago
- Automated (kinda) deployment of MalRDP infrastructure with Terraform & Ansible☆12Sep 15, 2023Updated 2 years ago
- ☆16Jun 1, 2018Updated 7 years ago
- Load any Beacon Object File using Powershell!☆261Dec 9, 2021Updated 4 years ago
- Powershell script to get all user devices registered in SCCM.☆15Jul 23, 2021Updated 4 years ago
- Proof-of-Concept to evade auditd by writing /proc/PID/mem☆24Aug 21, 2023Updated 2 years ago
- Sysmon EDR POC Build within Powershell to prove ability.☆223May 1, 2021Updated 4 years ago
- Detect and respond to Cobalt Strike beacons using ETW.☆516Jul 15, 2022Updated 3 years ago
- A PowerShell Module to create a Client and Server Named Pipe Server on Windows Systems☆11Aug 31, 2018Updated 7 years ago
- Various android tools from Lingnu Open Source Consulting Ltd.☆14Mar 5, 2013Updated 13 years ago
- Timestomping module: overwrite file create/modify times in .NET (no pinvoke)☆27Dec 13, 2021Updated 4 years ago
- Leghorn code for PKI abuse☆34Jun 17, 2021Updated 4 years ago
- C2 redirector as a web API☆10May 22, 2021Updated 4 years ago
- Powershell Linter☆91Updated this week
- Scripts and One-Liners☆20Jan 31, 2025Updated last year
- Script to create MITRE ATT&CK Navigator layers from the annotated detection rules in Elastic Security (Kibana).☆20Jul 1, 2023Updated 2 years ago
- Event Tracing For Windows (ETW) Resources☆420Oct 30, 2025Updated 4 months ago
- A tool to modify timestamps in a packet capture to a user selected date☆31Aug 11, 2021Updated 4 years ago
- Standalone Windows tool to automatically retrieve Sysinternals' AD Explorer search output from the ListView control and save/copy to clip…☆38Apr 12, 2016Updated 9 years ago
- PowerShell module to support pinning items to the Taskbar and Start Menu☆12Jan 17, 2023Updated 3 years ago
- Intentionally Vulnerable Demo App: .NET MVC, WCF, WebAPI, Web Forms☆21Feb 10, 2024Updated 2 years ago
- ☆13Jun 22, 2017Updated 8 years ago
- Supporting material for the "Hunting Bugs In The Tropics" DEFCON 30 talk☆10Aug 18, 2022Updated 3 years ago
- Just a bunch of code snippets to identify and remediate common Active Directory Certificate Services issues.☆36Feb 13, 2024Updated 2 years ago
- Excel Add In Payload Generator☆14Oct 9, 2023Updated 2 years ago
- Transparently call NTAPI via Halo's Gate with indirect syscalls.☆15Apr 26, 2024Updated last year
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆87Mar 11, 2026Updated last week
- Execute PowerShell code at the antimalware-light protection level.☆142Dec 13, 2022Updated 3 years ago
- ☆20Aug 18, 2020Updated 5 years ago
- Python script to extract embedded data from binaries generated by SAPIEN Script Packager☆13Mar 20, 2024Updated 2 years ago
- Code to check AWS S3 buckets☆17Dec 19, 2017Updated 8 years ago
- A Vim syntax highlighting for YARA and YARA-X rules☆31Jan 1, 2026Updated 2 months ago
- SMBMap is a handy SMB enumeration tool - here with Kerberos support☆73Nov 3, 2021Updated 4 years ago
- A small script that automates Entra ID persistence with Windows Hello For Business key☆67Feb 16, 2025Updated last year
- http://moaistory.blogspot.com/2018/10/winsearchdbanalyzer.html☆127Jul 20, 2024Updated last year
- DLL Hijack Search Order Enumeration BOF☆149Nov 3, 2021Updated 4 years ago
- Monitor creation, deletion and changes to LDAP objects live during your pentest or system administration!☆908Oct 30, 2025Updated 4 months ago