Spoofing signatures in Office Open XML Documents (Word, Excel, Powerpoint)
☆26Nov 19, 2022Updated 3 years ago
Alternatives and similar repositories for sigspoox
Users that are interested in sigspoox are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This library provides functionality for fetching and parsing information about Common Vulnerabilities and Exposures (CVE) using the NIST …☆14May 11, 2023Updated 3 years ago
- Purple Team Dropper generator using open source templates.☆17May 23, 2024Updated 2 years ago
- This project is created for research into antivirus evasion by unhooking.☆18Sep 2, 2021Updated 4 years ago
- Injects shellcode into remote processes using direct syscalls☆77Dec 30, 2020Updated 5 years ago
- ☆76Feb 4, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Section Mapping Process Injection (secinject): Cobalt Strike BOF☆105Jan 7, 2022Updated 4 years ago
- Matryoshka loader is a tool that red team operators can leverage to generate shellcode for Microsoft Office document phishing payloads.☆43May 24, 2021Updated 5 years ago
- Standalone CIRCLean/KittenGroomer code to sanitize emails.☆11Aug 9, 2018Updated 8 years ago
- C# port of LogServiceCrash☆46Oct 7, 2020Updated 5 years ago
- Ayaabu is a funny trick that fake the installation of many Antivirus☆12Jul 6, 2016Updated 10 years ago
- ☆17Nov 26, 2020Updated 5 years ago
- Smuggle a file to a user's browser☆20Apr 16, 2022Updated 4 years ago
- LoadLibrary for offensive operations☆31Dec 14, 2021Updated 4 years ago
- AWS SSO Device-Code Phishing Toolkit for Red / Purple Teams☆23Mar 10, 2026Updated 5 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A PowerShell script to parse the docx/docm file format and update the template location.☆17Oct 15, 2019Updated 6 years ago
- ☆181Mar 27, 2023Updated 3 years ago
- SLib is a sandbox evasion library that implements some of the checks from https://evasions.checkpoint.com in C#☆66Aug 29, 2023Updated 2 years ago
- Hijack Printconfig.dll to execute shellcode☆103Jan 15, 2021Updated 5 years ago
- ☆23Mar 9, 2022Updated 4 years ago
- VDM sig bypass and additional WinAPI stubs☆19Feb 16, 2026Updated 5 months ago
- ☆12May 5, 2021Updated 5 years ago
- Panda - is a set of utilities used to research how PsExec encrypts its traffic.☆13Apr 20, 2021Updated 5 years ago
- Guide on using the PPPwnGo GUI tool☆12Sep 26, 2024Updated last year
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- C# 编写的用于 Dropbox 文件上传☆20Jan 16, 2022Updated 4 years ago
- C# Data Collector for BloodHound with CobaltStrike integration (BOF.NET)☆61Apr 13, 2023Updated 3 years ago
- Disable PPL via custom driver and dump lsass☆15Mar 13, 2021Updated 5 years ago
- A VS Code plugin to execute arbitrary JavaScript code at runtime over a local HTTP endpoint.☆33Feb 10, 2026Updated 6 months ago
- C# code to Sandbox Defender (and most probably other AV/EDRs).☆165Apr 22, 2022Updated 4 years ago
- ALPChecker - a tool to detect spoofing and blinding attacks on the ALPC interaction☆13Feb 13, 2023Updated 3 years ago
- lnk_parser is a full rust implementation to parse windows LNK files☆23Feb 17, 2026Updated 5 months ago
- UnhookMe is an universal Windows API resolver & unhooker addressing problem of invoking unmonitored system calls from within of your Red …☆348Jul 3, 2022Updated 4 years ago
- Permanently disable EDRs as local admin☆129Dec 19, 2025Updated 7 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Content from THOTCON 0xa talk☆10May 5, 2019Updated 7 years ago
- CobaltStrike BOF - Inject ETW Bypass into Remote Process via Syscalls (HellsGate|HalosGate)☆300Sep 28, 2021Updated 4 years ago
- Proof of concept Beacon Object File (BOF) that attempts to detect userland hooks in place by AV/EDR☆157Jul 22, 2021Updated 5 years ago
- OCR识别内容后直接请求GPT获取结果的便捷工具。☆10May 5, 2023Updated 3 years ago
- BOF/COFF obj file to PIC(shellcode). by golang☆40Sep 28, 2022Updated 3 years ago
- 扫描CobaltStrike的恶意IP☆31Apr 6, 2022Updated 4 years ago
- A collection of scripts used to support an OffSecOps pipeline.☆15Jan 31, 2021Updated 5 years ago