f1rehaz4rd / Project-IrohLinks
Offensive Windows security tooling that allows for persistance to the operating system.
☆10Updated 4 years ago
Alternatives and similar repositories for Project-Iroh
Users that are interested in Project-Iroh are comparing it to the libraries listed below
Sorting:
- Custom SOCKS proxy for redteam☆13Updated 3 years ago
- Command and Control that uses NTP as the transport protocol.☆26Updated 4 years ago
- PE File Blessing - To continue or not to continue☆87Updated 6 years ago
- Smart Card PIN swiping DLL☆78Updated 5 years ago
- In 'n Out - See what goes in and comes out of PEs☆35Updated 3 years ago
- 7 days of Red Teaming TTPs that your favorite tools may use to acheive a post exploitation goal☆18Updated 4 years ago
- Specialized tool to dump Position Independent Code.☆22Updated 5 years ago
- pypykatz plugin for volatility3 framework☆46Updated 8 months ago
- A simple PoC to demonstrate that is possible to write Non writable memory and execute Non executable memory on Windows☆52Updated 4 years ago
- Proxy system calls over an RPC channel☆99Updated 3 years ago
- It's pointy and it hurts!☆126Updated 3 years ago
- Simple and sane cryptographic wrapper library.☆27Updated 2 years ago
- C++ function that will automagically unhook a specified Windows API☆62Updated 5 years ago
- Recreating and reviewing the Windows persistence methods☆39Updated 4 years ago
- ☆78Updated 3 years ago
- Winlogon and LSA Notification Password Filters☆19Updated 2 years ago
- ☆14Updated 3 years ago
- Implementation of b4rtiks's SharpMiniDump using NTFS transactions to avoid writting the minidump to disk and exfiltrating it via HTTPS us…☆71Updated 5 years ago
- A C port of b33f's UrbanBishop☆38Updated 5 years ago
- Raw socket library/framework for red team events☆33Updated 2 years ago
- It's what all the kids are talking about☆12Updated 2 years ago
- Small tool to play with IOCs caused by Imageload events☆44Updated 2 years ago
- A basic meterpreter protocol stager using the libpeconv library by hasherezade for reflective loading☆84Updated 3 years ago
- Track your beacons in a redteam scoreboard☆16Updated 5 years ago
- MITRE TTPs derived from Conti's leaked playbooks from XSS.IS☆41Updated 4 years ago
- Basic Linux binary shim method on the passwd binary from the shadow package to steal credentials as they are changed.☆12Updated last year
- A simple dumper as FreshyCalls' PoC. That's what's trendy, isn't it? ¯\_(ツ)_/¯☆39Updated 5 years ago
- DoppelGate relies on reading ntdll on disk to grab syscall stubs, and patches these syscall stubs into desired functions to bypass Userla…☆123Updated 3 years ago
- Library of tools and examples for loading/bootstrapping managed code from unmanaged code in .NET☆64Updated 6 years ago
- Python module for running BOFs☆79Updated 2 months ago