daddycocoaman / volplugins
Repository of Volatility3 plugins
☆21Updated last year
Alternatives and similar repositories for volplugins:
Users that are interested in volplugins are comparing it to the libraries listed below
- Python tool to find vulnerable AD object and generating csv report☆26Updated 2 years ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆53Updated 2 years ago
- ☆45Updated last year
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆86Updated 2 years ago
- Python tool to find vulnerable AD object and generating csv report☆14Updated 2 years ago
- Slide decks and/or materials from conference presentations☆55Updated 2 years ago
- a tiny program to consume from ETW providers for research☆46Updated 3 weeks ago
- Modified-Thycotic-Secret-Stealer for use with DPAPI and offline Decryption☆18Updated 2 years ago
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆62Updated 2 years ago
- ☆71Updated 2 years ago
- ☆22Updated last year
- Python module for running BOFs☆64Updated last year
- Windows Persistence Toolkit in C#☆36Updated 2 years ago
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- ☆83Updated 2 years ago
- Collection of shellcode injection techniques packed in a D/Invoke weaponized DLL☆20Updated 2 years ago
- A tool for interacting with the Anti-Malware Scan Interface API for pen testing purposes.☆58Updated last year
- BloodCheck enables Red and Blue Teams to manage multiple Neo4j databases and run Cypher queries against a BloodHound dataset.☆17Updated 3 years ago
- Living off the land searches for explorer and sharepoint☆54Updated 3 months ago
- Unchain AMSI by patching the provider’s unmonitored memory space☆88Updated 2 years ago
- A VSCode devcontainer for development of COFF files with batteries included.☆47Updated last year
- An Ansible collection that installs an ADFS deployment with optional configurations.☆27Updated last month
- Yara Rules for Modern Malware☆73Updated 10 months ago
- ☆42Updated 6 months ago
- Tooling related to the WAM Bam - Recovering Web Tokens From Office blog post☆118Updated 2 years ago
- Simple and sane cryptographic wrapper library.☆26Updated last year
- ☆54Updated 3 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- Placeholder for my detection repo and misc detection engineering content☆43Updated last year
- ☆81Updated 2 years ago