comosedice2012 / Introduction-to-Process-Hollowing
☆20Updated 3 years ago
Alternatives and similar repositories for Introduction-to-Process-Hollowing:
Users that are interested in Introduction-to-Process-Hollowing are comparing it to the libraries listed below
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago
- Small tool to play with IOCs caused by Imageload events☆42Updated last year
- Another AMSI bypass - but in C++.☆23Updated last year
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- ☆12Updated 4 years ago
- C# project to Reflectively load .Net assemblies in memory☆17Updated 10 months ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- Simple and sane cryptographic wrapper library.☆27Updated 2 years ago
- ☆10Updated last year
- This repo hosts a poc of how to execute F# code within an unmanaged process☆66Updated 10 months ago
- ☆26Updated 2 months ago
- EventLogSilencer is a PowerShell script designed for disable Windows Event Logging☆16Updated last year
- Windows File Enumeration Intel Gathering Tool.☆17Updated last year
- Items related to the RedELK workshop given at security conferences☆29Updated last year
- Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level☆26Updated 2 years ago
- 7 days of Red Teaming TTPs that your favorite tools may use to acheive a post exploitation goal☆18Updated 4 years ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆55Updated 2 years ago
- PoC for detecting and evading ETW detection of .Net Assembly.Load☆20Updated 4 years ago
- Extension functionality for the NightHawk operator client☆27Updated last year
- ☆25Updated 3 years ago
- A collection of random small Aggressor snippets that don't warrant their own repo☆23Updated 2 years ago
- Extension functionality for the NightHawk operator client☆27Updated last year
- Playing with PE's and Building Structures by Hand☆22Updated 3 years ago
- Offensive Assembly code snippets.☆12Updated last year
- ☆45Updated last year
- A collection of my presentation materials.☆17Updated 11 months ago
- Remote Desktop Protocol .NET Console Application for Authenticated Command Execution☆12Updated 5 years ago
- powershell script i wrote that can suspend an arbitrary process (with limits)☆20Updated 2 years ago
- GhostLoader - AppDomainManager - Injection - 攻壳机动队☆52Updated 4 years ago
- A Docker container used to easily compile Nim binaries generated by my tools (NimPackt and NimPlant)☆16Updated last year