g0mxxm / shellcode_extractor_for_maldoc
The code in this repository which function is to extract the shellcode from the maldoc.
☆10Updated last year
Alternatives and similar repositories for shellcode_extractor_for_maldoc:
Users that are interested in shellcode_extractor_for_maldoc are comparing it to the libraries listed below
- Cobalt Strike DNS beacon parser☆11Updated 3 years ago
- Exploit for CVE-2024-0402 in Gitlab☆12Updated last month
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆14Updated 2 years ago
- Python Script to quickly check if a host is running NetScaler Gateway and/or AAA☆12Updated last year
- Detects attempts and successful exploitation of CVE-2022-26809☆32Updated 7 months ago
- Golang wrapper for the Microsoft Antimalware Scan Interface (AMSI)☆11Updated 3 years ago
- ☆15Updated 4 years ago
- HTTP Protocol Stack CVE-2021-31166☆13Updated 6 months ago
- Here is python script I wrote for deobfuscation APT32 sample.☆10Updated 3 years ago
- SyscallLoader☆10Updated 3 years ago
- works but not work, cao!☆24Updated 3 years ago
- Detect Beacon Powerful (Include CobatStrike 4.10 Aha~)☆19Updated 6 months ago
- some sploits☆17Updated 7 months ago
- BOF/COFF obj file to PIC(shellcode). by golang☆38Updated 2 years ago
- TrojanDropper/PS.Maloader.d☆12Updated 3 years ago
- Slides from out talk at BH IL 2022☆28Updated 3 years ago
- shared samples from #dailyphish and/or #apt tweets☆39Updated last month
- A library to parse, modify, and implement Malleable C2 profiles☆21Updated 6 years ago
- ☆18Updated 2 years ago
- Critical Vulnerabilities in Trend Micro Deep Security Agent for Linux☆28Updated 3 years ago
- ☆17Updated last year
- Fortinet FortiOS路径遍历漏洞 (CVE-2018-13379)批量检测脚本☆8Updated 4 years ago
- Terminate the eventlog thread to disable the windows eventlog☆20Updated 5 years ago
- 针对于AzureAttestService服务的本地提权Eop,微软表示已经进行修复☆2Updated 3 years ago
- Use current thread token to execute command☆15Updated 4 years ago
- Source code RDPUploader☆19Updated 6 years ago
- Ntdll Unhooking POC☆18Updated 2 years ago
- About C# loader that copies a chunk at the time of the shellcode in memory in a suspended process, rather that all at once☆12Updated 2 years ago
- CVE-2023-34992: Fortinet FortiSIEM Command Injection Proof of Concept Exploit☆26Updated 11 months ago
- Proof of Concept for WatchGuard Authenticated Arbitrary File Read (CVE-2022-31749)☆10Updated 2 years ago