g0mxxm / shellcode_extractor_for_maldoc
The code in this repository which function is to extract the shellcode from the maldoc.
☆10Updated last year
Alternatives and similar repositories for shellcode_extractor_for_maldoc:
Users that are interested in shellcode_extractor_for_maldoc are comparing it to the libraries listed below
- Cobalt Strike DNS beacon parser☆11Updated 3 years ago
- some sploits☆17Updated 5 months ago
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆14Updated 2 years ago
- ☆15Updated 4 years ago
- shared samples from #dailyphish and/or #apt tweets☆37Updated last month
- Slides from out talk at BH IL 2022☆28Updated 2 years ago
- Detect Beacon Powerful (Include CobatStrike 4.10 Aha~)☆17Updated 4 months ago
- Golang wrapper for the Microsoft Antimalware Scan Interface (AMSI)☆11Updated 2 years ago
- Detects attempts and successful exploitation of CVE-2022-26809☆32Updated 5 months ago
- Python Script to quickly check if a host is running NetScaler Gateway and/or AAA☆12Updated last year
- Here is python script I wrote for deobfuscation APT32 sample.☆10Updated 3 years ago
- TrojanDropper/PS.Maloader.d☆12Updated 3 years ago
- ☆19Updated 3 years ago
- Ntdll Unhooking POC☆19Updated 2 years ago
- ☆13Updated last year
- Cobalt Strike BOF to list Windows Pipes & return their Owners & DACL Permissions☆53Updated 3 years ago
- Elasticsearch Stack Overflow Vulnerability☆18Updated last year
- Post-Exploitation script to exfiltrate 7-zip files☆10Updated 2 years ago
- Rust Weaponization for Red Team Engagements.☆14Updated 3 years ago
- HTTP Protocol Stack CVE-2021-31166☆13Updated 4 months ago
- YaraSploit is a collection of Yara rules generated from Metasploit framework shellcodes.☆43Updated last year
- Red Team Tools for Emulated Adversary Techniques with MITRE ATT&CK☆30Updated 4 years ago
- Beacon Debugger☆39Updated 3 months ago
- RCE in NPM VSCode Extension☆20Updated 3 years ago
- ☆14Updated 3 years ago
- Backdoored Electron app.asar☆15Updated 3 years ago
- Executes shellcode from a remote server and aims to evade in-memory scanners☆31Updated 5 years ago
- A library to parse, modify, and implement Malleable C2 profiles☆21Updated 6 years ago
- VM escape (QEMU, VirtualBox, VMware)☆17Updated 2 years ago
- Source files for my posts☆15Updated last year