diversenok / TokenUniverseLinks
An advanced tool for working with access tokens and Windows security policy.
☆620Updated 2 weeks ago
Alternatives and similar repositories for TokenUniverse
Users that are interested in TokenUniverse are comparing it to the libraries listed below
Sorting:
- Project for tracking publicly disclosed DLL Hijacking opportunities.☆829Updated 3 weeks ago
- A .NET tool for exporting and importing certificates without touching disk.☆495Updated 4 years ago
- Loads any C# binary in mem, patching AMSI + ETW.☆837Updated 4 years ago
- LoadLibrary for offensive operations☆1,161Updated 4 years ago
- PoCs and tools for investigation of Windows process execution techniques☆935Updated last month
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆777Updated last year
- Execute unmanaged Windows executables in CobaltStrike Beacons☆703Updated 2 years ago
- ☆588Updated last week
- OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team…☆818Updated 2 years ago
- RPC Monitor tool based on Event Tracing for Windows☆371Updated last year
- ☆767Updated 2 years ago
- ☆490Updated 3 years ago
- ☆529Updated 4 months ago
- Enumerate and disable common sources of telemetry used by AV/EDR.☆811Updated 4 years ago
- Expriments☆473Updated last year
- A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.ht…☆659Updated 2 years ago
- A centralized resource for previously documented WDAC bypass techniques☆579Updated last month
- Spartacus DLL/COM Hijacking Toolkit☆1,062Updated last year
- .Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py☆610Updated 2 years ago
- Tools and PoCs for Windows syscall investigation.☆363Updated 4 months ago
- A tool that shows detailed information about named pipes in Windows☆693Updated 11 months ago
- Transacted Hollowing - a PE injection technique, hybrid between ProcessHollowing and ProcessDoppelgänging☆567Updated last year
- Various ways to execute shellcode☆505Updated last year
- Sysmon-Like research tool for ETW☆368Updated 2 years ago
- Hardcore Debugging☆915Updated last month
- ☆1,727Updated last year
- Living Off The Land Drivers☆1,303Updated last week
- KaynLdr is a Reflective Loader written in C/ASM☆550Updated last year
- Important notes and topics on my journey towards mastering Windows Internals☆409Updated last year
- Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts wa…☆1,005Updated last week