f1rehaz4rd / Project-Iroh
Offensive Windows security tooling that allows for persistance to the operating system.
☆10Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for Project-Iroh
- Custom SOCKS proxy for redteam☆12Updated 2 years ago
- DLL Injector as a service that watches the health of the started thread.☆9Updated 4 years ago
- Raw socket library/framework for red team events☆34Updated last year
- Attack chain emulator. Write recipes for initial access easily☆20Updated last year
- In 'n Out - See what goes in and comes out of PEs☆32Updated 2 years ago
- Python module for running BOFs☆64Updated last year
- Basic Linux binary shim method on the passwd binary from the shadow package to steal credentials as they are changed.☆11Updated last week
- A VSCode devcontainer for development of COFF files with batteries included.☆47Updated last year
- Winlogon and LSA Notification Password Filters☆18Updated last year
- Collection of Rust repos useful for Red Teamers.☆30Updated 2 years ago
- PE File Blessing - To continue or not to continue☆86Updated 4 years ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆53Updated 2 years ago
- quASAR: ASAR manipulation made easy☆24Updated 2 years ago
- Golang bindings for PE-sieve☆40Updated last year
- winacl, a cross platforms Go library to work with ntSecurityDescriptor.☆23Updated 3 weeks ago
- ☆22Updated 6 months ago
- Simple and sane cryptographic wrapper library.☆26Updated last year
- 7 days of Red Teaming TTPs that your favorite tools may use to acheive a post exploitation goal☆16Updated 3 years ago
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago
- Python tool to find vulnerable AD object and generating csv report☆14Updated 2 years ago
- It's what all the kids are talking about☆12Updated last year
- Former Multi - Ring to Kernel To UserMode Transitional Shellcode For Remote Kernel Exploits☆28Updated 2 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆65Updated 4 months ago
- Specialized tool to dump Position Independent Code.☆21Updated 4 years ago
- Recreating and reviewing the Windows persistence methods☆39Updated 3 years ago
- Collect Windows telemetry for Maldev☆57Updated this week
- Golang tool designed to exfiltrate passwords found via the sshd and su services☆4Updated 6 months ago
- ☆10Updated 4 years ago
- C++ function that will automagically unhook a specified Windows API☆60Updated 4 years ago