audibleblink / it-o
Hacky linux memory probe. Yara or Regex scan process memory
☆11Updated 11 months ago
Alternatives and similar repositories for it-o:
Users that are interested in it-o are comparing it to the libraries listed below
- reboot of https://github.com/Genetic-Malware/Ebowla in order to simplify / modernize the codebase and provide ongoing support☆22Updated 3 years ago
- donLoader is a shellcode loader creation tool that uses donut to convert executable payloads into shellcode to evade detection on disk.☆19Updated 3 years ago
- SSDP Service Discovery☆16Updated 6 years ago
- ☆15Updated 3 years ago
- Active Directory Password Spray Testing Utility in Go☆14Updated 10 months ago
- Rosie the Pivoter☆17Updated 6 years ago
- ☆33Updated 4 years ago
- Exactly what it sounds like, which is something rad☆21Updated 2 years ago
- A proof-of-concept tool that attempts to retrieve the configuration from the memory dump of an F-Secure C3 Relay executable.☆17Updated 3 years ago
- Pure Go rewrite of knockknock☆10Updated 2 years ago
- Miscellaneous examples for use with Cobalt Strike Beacon☆10Updated 4 years ago
- A variation CredBandit that uses compression to reduce the size of the data that must be trasnmitted.☆18Updated 3 years ago
- DoublePulsar (Position-Independent) Shellcode (Windows 7 SP1 x64)☆26Updated 4 years ago
- ADD/SUB encoder for alphanumeric shellcode☆9Updated 5 years ago
- A small example of loading BOFs in Python with pure reflection☆18Updated 2 years ago
- Apfell implant written in C#.☆8Updated 4 years ago
- 3gsocks - a reverse connection socks5 based network pivot☆10Updated 3 years ago
- A collection of sample code used in some experiments with Sliver C2☆13Updated last year
- #️⃣ 🕸️ 👤 HTTP Headers Hashing☆14Updated last year
- Playing with PE's and Building Structures by Hand☆22Updated 2 years ago
- Automated deployment and configuration of a Mythic server using Terraform and Ansible☆9Updated last year
- Small utility package for manipulating Windows process tokens☆26Updated 2 years ago
- A tool to sync mythic events with ghostwriter oplog.☆12Updated 3 months ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- ☆47Updated 3 years ago
- TypeScript/JavaScript client libraries for Sliver☆20Updated last year
- A library to parse, modify, and implement Malleable C2 profiles☆21Updated 6 years ago
- Proof-of-Concept to evade auditd by tampering via ptrace☆16Updated last year
- Swift code to programmatically execute local or hosted JXA payloads from Terminal without using the on-disk osascript binary.☆23Updated 3 years ago