decalage2 / oledump-contribLinks
The oledump-contrib repository contains plugins and enhancements for the oledump tool published by Didier Stevens.
☆57Updated 9 years ago
Alternatives and similar repositories for oledump-contrib
Users that are interested in oledump-contrib are comparing it to the libraries listed below
Sorting:
- Powershell to copy ntds.dit☆62Updated 9 years ago
- A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会☆165Updated 6 years ago
- This is a group of tools that I was planning on releasing During Derbycon 2019 talk if it was accepted or with a blogpost if not.☆43Updated 4 years ago
- Proof of Concept exploit for CVE-2017-8570☆185Updated 8 years ago
- Active Directory pentest scripts☆121Updated 10 years ago
- use COM Object hijacking to maintain persistence.(Hijack CAccPropServicesClass and MMDeviceEnumerator)☆60Updated 8 years ago
- Remove individual lines from Windows XML Event Log (EVTX) files☆273Updated 4 years ago
- APT || Execution || Launch || APTs || ( Authors harr0ey, bohops )☆110Updated 7 years ago
- Use Waitfor.exe to maintain persistence☆55Updated 4 years ago
- a collection of webshell☆48Updated 7 years ago
- Pull some collected APT group related samples, ransomware, remote control and other malicious programs for security researchers to use.☆44Updated 6 years ago
- YaraSploit is a collection of Yara rules generated from Metasploit framework shellcodes.☆45Updated 2 years ago
- CVE-2020-0688_EXP Auto trigger payload & encrypt method☆145Updated 5 years ago
- Use subProcessTag Value From TEB to identify Event Log Threads☆88Updated 4 years ago
- CVE-2020-0796 Local Privilege Escalation POC☆244Updated 5 years ago
- ☆187Updated 4 years ago
- Use powershell to test Office-based persistence methods☆76Updated 4 years ago
- Explore Indicators of Compromise Automatically☆97Updated 5 years ago
- a pass-the-hash tool☆104Updated 7 years ago
- a tool to manipulate dcc(domain cached credentials) in windows registry, based mainly on the work of mimikatz and impacket☆68Updated 7 years ago
- ClamAV_0Day_exploit☆90Updated 6 years ago
- Learn from Casey Smith@subTee☆29Updated 4 years ago
- Cobalt Strike aggressor scripts☆90Updated 7 years ago
- just test☆66Updated 3 years ago
- NTDS.dit offline dumper with non-elevated☆221Updated 8 years ago
- Auto install WinPcap on Windows(command line)☆54Updated 8 years ago
- Use CLR to inject all the .NET apps☆183Updated 4 years ago
- Toolset for research malware and Cobalt Strike beacons☆211Updated 11 months ago
- Miscellaneous projects related to attacking Windows.☆197Updated 11 years ago
- Win32k Elevation of Privilege Poc☆83Updated 6 years ago