anvilsecure / nosymonkeyLinks
API hooking and code injection made easy!
☆40Updated 2 years ago
Alternatives and similar repositories for nosymonkey
Users that are interested in nosymonkey are comparing it to the libraries listed below
Sorting:
- powershell script i wrote that can suspend an arbitrary process (with limits)☆22Updated 2 years ago
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- ☆18Updated 10 months ago
- Identify binaries with Authenticode digital signatures signed to an internal CA/domain☆40Updated last year
- Timestomp Tool to flatten MAC times with a specific timestamp☆48Updated 6 months ago
- Items related to the RedELK workshop given at security conferences☆29Updated 2 years ago
- DLL Unlinking from InLoadOrderModuleList, InMemoryOrderModuleList, InInitializationOrderModuleList, and LdrpHashTable☆57Updated last year
- ECC Public Key Cryptography☆38Updated 2 years ago
- ☆48Updated 2 years ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 3 years ago
- Slides and videos from talks given at cons☆25Updated 4 months ago
- Exfiltrate data over audio output from remote desktop sessions - Covert channel PoC☆64Updated 11 months ago
- A PoC for achieving persistence via push notifications on Windows☆47Updated 2 years ago
- Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)☆40Updated 2 years ago
- quASAR: ASAR manipulation made easy☆38Updated 3 years ago
- Tool for obtaining information about PPL processes☆16Updated last year
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆22Updated last year
- A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.☆39Updated 3 years ago
- Code Execution & Persistence in NETWORK SERVICE FAX Service☆34Updated 3 years ago
- A mechanism that trampoline hooks functions in x86/x64 systems.☆21Updated last year
- ☆17Updated 2 years ago
- Powershell implementation of a novel technique. Invoke-GPTObfuscation is a PowerShell Obfuscator that utilizes OpenAI (and other APIs) to…☆48Updated last year
- HTML Smuggling with Web Assembly☆64Updated last year
- Docker container for running CobaltStrike 4.10☆37Updated last year
- dump Chrome cookies remotely with atexec and CDP☆67Updated last year
- Leverages B64 chunks to split files and save to clipboard☆26Updated 6 months ago
- ☆12Updated 3 years ago
- Slides from my talk at the Adversary Village, Defcon 30☆29Updated 2 years ago
- A Large Action Model designed to operate on MacOS or Windows which interacts with common C2 interfaces such as Cobalt Strike, Havoc, or B…☆26Updated last year
- ☆60Updated last year