C# Utilities for Windows Notification Facility
☆160Apr 14, 2025Updated last year
Alternatives and similar repositories for SharpWnfSuite
Users that are interested in SharpWnfSuite are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Mochi is a proof-of-concept C++ loader that leverages the ChaiScript embedded scripting language to execute code.☆101Mar 27, 2022Updated 4 years ago
- A C# Tool to find left over pentest data for use in your pentest or redteam op. Blue could maybe use to find files to cleanup☆38Sep 14, 2023Updated 2 years ago
- RefleXXion is a utility designed to aid in bypassing user-mode hooks utilised by AV/EPP/EDR etc. In order to bypass the user-mode hooks, …☆499Jan 25, 2022Updated 4 years ago
- CSharp Writeups for HackSys Extreme Vulnerable Driver☆44Dec 22, 2021Updated 4 years ago
- Overwrite a process's recovery callback and execute with WER☆104Apr 17, 2022Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- C# Reflective loader for unmanaged binaries.☆447Jan 25, 2023Updated 3 years ago
- ☆137Dec 4, 2023Updated 2 years ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆89Jul 7, 2022Updated 4 years ago
- WNF Utilities 4 Newbies (WNFUN)☆106Dec 6, 2018Updated 7 years ago
- It stinks☆101Apr 22, 2022Updated 4 years ago
- Kernel mode WinDbg extension and PoCs for token privilege investigation.☆946Aug 10, 2026Updated last week
- Detect strange memory regions and DLLs☆191Jan 20, 2022Updated 4 years ago
- Cobalt Strike Aggressor Script that Performs System/AV/EDR Recon☆339Jun 6, 2022Updated 4 years ago
- Tools and PoCs for Windows syscall investigation.☆365Dec 2, 2025Updated 8 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus☆247Feb 23, 2022Updated 4 years ago
- Some of my custom "tools".☆28Feb 21, 2022Updated 4 years ago
- Cobalt Strike BOF for quser.exe implementation using Windows API☆88Mar 22, 2023Updated 3 years ago
- ☆208Feb 24, 2022Updated 4 years ago
- A C implementation of the Sektor7 "A Thief" Windows privesc technique.☆68Mar 25, 2022Updated 4 years ago
- KaynLdr is a Reflective Loader written in C/ASM☆553Dec 3, 2023Updated 2 years ago
- A variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC☆376May 24, 2022Updated 4 years ago
- InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assem…☆196Jul 9, 2021Updated 5 years ago
- ☆59Jan 9, 2023Updated 3 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- WMEye is a post exploitation tool that uses WMI Event Filter and MSBuild Execution for lateral movement☆373Dec 24, 2021Updated 4 years ago
- Beacon Object File & C# project to check LDAP signing☆203Aug 7, 2024Updated 2 years ago
- An other No-Fix LPE, NTLMRelay2Self over HTTP (Webdav).☆420Jan 27, 2024Updated 2 years ago
- C# version of MDSec's ParallelSyscalls☆143Jan 9, 2022Updated 4 years ago
- Beacon Object File Loader☆295Dec 3, 2023Updated 2 years ago
- DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.☆323Sep 23, 2022Updated 3 years ago
- Splitting and executing shellcode across multiple pages☆103Jun 8, 2023Updated 3 years ago
- ☆31Aug 23, 2020Updated 5 years ago
- ☆143May 4, 2022Updated 4 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Tool to bypass LSA Protection (aka Protected Process Light)☆1,000Dec 4, 2022Updated 3 years ago
- ☆224Oct 22, 2023Updated 2 years ago
- Upsilon execute shellcode with syscalls - no API like NtProtectVirtualMemory is used☆90Aug 26, 2021Updated 4 years ago
- Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.☆244Sep 26, 2023Updated 2 years ago
- A simple program to hook the current process to identify the manual syscall executions on windows☆266Nov 18, 2022Updated 3 years ago
- ☆154Jan 6, 2023Updated 3 years ago
- ☆256Sep 28, 2023Updated 2 years ago