diversenok / TokenUniverseLinks
An advanced tool for working with access tokens and Windows security policy.
☆618Updated this week
Alternatives and similar repositories for TokenUniverse
Users that are interested in TokenUniverse are comparing it to the libraries listed below
Sorting:
- A DLL loader with advanced evasive features☆753Updated 2 years ago
- Project for tracking publicly disclosed DLL Hijacking opportunities.☆780Updated last week
- Loads any C# binary in mem, patching AMSI + ETW.☆839Updated 3 years ago
- A .NET tool for exporting and importing certificates without touching disk.☆493Updated 3 years ago
- LoadLibrary for offensive operations☆1,148Updated 3 years ago
- Execute unmanaged Windows executables in CobaltStrike Beacons☆684Updated 2 years ago
- OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team…☆813Updated last year
- ☆577Updated last month
- ☆520Updated last month
- .Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py☆610Updated 2 years ago
- RPC Monitor tool based on Event Tracing for Windows☆360Updated 10 months ago
- Nidhogg is an all-in-one simple to use windows kernel rootkit.☆2,023Updated this week
- PoCs and tools for investigation of Windows process execution techniques☆923Updated this week
- Enumerate and disable common sources of telemetry used by AV/EDR.☆801Updated 4 years ago
- A centralized resource for previously documented WDAC bypass techniques☆567Updated 2 months ago
- Process Hollowing (Malware Technique)☆1,341Updated 2 months ago
- Spartacus DLL/COM Hijacking Toolkit☆1,050Updated last year
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆761Updated last year
- Tools and PoCs for Windows syscall investigation.☆361Updated last month
- Kernel mode WinDbg extension and PoCs for token privilege investigation.☆866Updated 5 months ago
- Exploring RPC interfaces on Windows☆326Updated last year
- A tool that shows detailed information about named pipes in Windows☆683Updated 8 months ago
- Expriments☆465Updated 9 months ago
- Various ways to execute shellcode☆492Updated last year
- Important notes and topics on my journey towards mastering Windows Internals☆397Updated last year
- A C# Command & Control framework☆1,005Updated last year
- Adaptive DLL hijacking / dynamic export forwarding☆762Updated 5 years ago
- Enumerating and removing kernel callbacks using signed vulnerable drivers☆566Updated 2 years ago
- ☆499Updated last year
- Sysmon-Like research tool for ETW☆353Updated 2 years ago