eurecom-s3 / x-ray-tlsLinks
Generic and transparent TLS inspection for local programs
☆23Updated 8 months ago
Alternatives and similar repositories for x-ray-tls
Users that are interested in x-ray-tls are comparing it to the libraries listed below
Sorting:
- LILO based Pulse Secure appliance disk image decryptor☆13Updated last year
- Source files for my posts☆17Updated 2 years ago
- defender_database☆18Updated last year
- Code for BH21 talk: "Generating YARA Rules by Classifying Malicious Byte Sequences"☆17Updated 4 months ago
- This project fully automates the process of analyzing and exploiting IoT malware to find live CnC servers.☆42Updated 11 months ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆52Updated 6 years ago
- ☆25Updated 2 years ago
- A simple Linux in-memory .so loader☆30Updated 2 years ago
- ☆25Updated last year
- ssdeep cluster analysis for malware files☆31Updated 5 years ago
- ☆18Updated 4 months ago
- A modular Karton Framework service that unpacks common packers like UPX and others using the Qiling Framework.☆58Updated 4 years ago
- Inject unsigned DLL into Protected Process Light (PPL)☆25Updated last month
- ☆12Updated 5 years ago
- ☆22Updated last year
- A Practical example of ELAM (Early Launch Anti-Malware)☆34Updated 3 years ago
- Fuzzing Harness and Unpatched Crash Results from Fuzzing Defender MpEngine☆26Updated last month
- IDA Pro plugin to aid with the analysis of native IIS modules☆18Updated 10 months ago
- anti-ransomware file-system filter☆59Updated 9 months ago
- Load a dynamic library from memory using a fuse mount☆31Updated last year
- A Lazy Programmer's Tips for Avoiding the SOC ~ BSides Belfast 2024☆16Updated 9 months ago
- Finds imports that could be exploited, still requires manual analysis.☆27Updated 2 years ago
- ☆19Updated 2 years ago
- ☆17Updated 5 years ago
- yet another hidden LKM hunter☆24Updated last year
- Extracted lua script from Defender mpavbase.vdm and mpasbase.vdm☆14Updated 11 months ago
- A simple provider to analyse what gets passed into Microsoft's Anti-Malware Scan Interface☆16Updated 5 years ago
- Windows (ShadowMove) Socket Duplication☆83Updated 5 years ago
- Windows NTLM Authentication Backdoor☆17Updated 3 years ago
- Disable PPL via custom driver and dump lsass☆15Updated 4 years ago