eversinc33 / UnXorStringsNetLinks
Deobfuscation of XorStringsNet
☆14Updated last year
Alternatives and similar repositories for UnXorStringsNet
Users that are interested in UnXorStringsNet are comparing it to the libraries listed below
Sorting:
- ☆38Updated 8 months ago
- ☆60Updated last year
- An interactive TUI tool to create Brute Ratel C4 profiles based on BURP browsing data.☆28Updated 6 months ago
- ☆59Updated last year
- Mythic C2 wrapper for NimSyscallPacker☆25Updated 8 months ago
- malleable profile generator GUI for Havoc☆55Updated 2 years ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated last year
- ☆19Updated last year
- ☆47Updated 2 years ago
- in-process powershell runner for BRC4☆48Updated 2 years ago
- an Improoved Version of 0xNinjaCyclone´s EarlyCascade Code☆22Updated 9 months ago
- BadExclusions is a tool to identify folder custom or undocumented exclusions on AV/EDR☆20Updated last year
- A port of classic netcat to C#☆34Updated 2 years ago
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- Another version of .NET loader provides capabilities of bypassing ETW and AMSI, utilizing VEH for syscalls and loading .NET assemblies☆49Updated 4 months ago
- Example of using Sleep to create better named pipes.☆41Updated 2 years ago
- ☆49Updated 2 years ago
- Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by …☆24Updated 2 years ago
- string encryption in Nim☆20Updated last year
- Just another Process Injection using Process Hollowing technique.☆19Updated 2 years ago
- powershell script i wrote that can suspend an arbitrary process (with limits)☆22Updated 2 years ago
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆45Updated last year
- A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.☆39Updated 3 years ago
- 「⚙️」Detect which native Windows API's (NtAPI) are being hooked☆38Updated 11 months ago
- ☆19Updated 11 months ago
- These are the slide decks and source code for Brute Ratel Seminar conducted on 24th August 2023. The youtube video for the seminar can be…☆22Updated 2 years ago
- freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package☆34Updated 2 years ago
- Cortex EDR Ransomware protection Bypass☆25Updated 9 months ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆24Updated 3 years ago
- ☆15Updated 2 years ago