diversenok / TokenUniverse
An advanced tool for working with access tokens and Windows security policy.
☆587Updated 5 months ago
Alternatives and similar repositories for TokenUniverse:
Users that are interested in TokenUniverse are comparing it to the libraries listed below
- Project for tracking publicly disclosed DLL Hijacking opportunities.☆695Updated last month
- A DLL loader with advanced evasive features☆687Updated last year
- PoCs and tools for investigation of Windows process execution techniques☆888Updated last month
- Loads any C# binary in mem, patching AMSI + ETW.☆806Updated 3 years ago
- A centralized resource for previously documented WDAC bypass techniques☆497Updated 8 months ago
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆720Updated 10 months ago
- Execute unmanaged Windows executables in CobaltStrike Beacons☆650Updated last year
- Kernel mode WinDbg extension and PoCs for token privilege investigation.☆828Updated this week
- RPC Monitor tool based on Event Tracing for Windows☆333Updated 5 months ago
- Important notes and topics on my journey towards mastering Windows Internals☆357Updated 8 months ago
- A .NET tool for exporting and importing certificates without touching disk.☆479Updated 3 years ago
- Tool to bypass LSA Protection (aka Protected Process Light)☆914Updated 2 years ago
- ☆568Updated 2 months ago
- Dump the memory of a PPL with a userland exploit☆855Updated 2 years ago
- Various ways to execute shellcode☆476Updated 10 months ago
- ☆739Updated last year
- Spartacus DLL/COM Hijacking Toolkit☆1,008Updated 11 months ago
- A Highly capable Pe Packer☆689Updated 2 years ago
- A tool that shows detailed information about named pipes in Windows☆579Updated 2 months ago
- Enumerate and disable common sources of telemetry used by AV/EDR.☆778Updated 3 years ago
- A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.ht…☆627Updated 2 years ago
- ☆1,577Updated 4 months ago
- KaynLdr is a Reflective Loader written in C/ASM☆527Updated last year
- Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts wa…☆911Updated last month
- ☆483Updated last month
- DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.☆483Updated 2 years ago
- ☆465Updated 2 years ago
- UAC bypass by abusing RPC and debug objects.☆609Updated last year
- Nidhogg is an all-in-one simple to use windows kernel rootkit.☆1,863Updated 3 months ago