g4xyk00 / malware-kiddie-windowsLinks
This repository stores the proof-of-concept of Windows malware categorized with MITRE ATT&CK.
☆14Updated 10 months ago
Alternatives and similar repositories for malware-kiddie-windows
Users that are interested in malware-kiddie-windows are comparing it to the libraries listed below
Sorting:
- Simple PowerShell script to enable process scanning with Yara.☆98Updated 2 years ago
- ARTi-C2 is a post-exploitation framework used to execute Atomic Red Team test cases with rapid payload deployment and execution capabili…☆178Updated 2 weeks ago
- ☆48Updated 5 years ago
- Triaging Windows event logs based on SANS Poster☆39Updated 2 years ago
- Pointer was developed for massive hunting and mapping Cobalt Strike servers exposed on the internet.☆68Updated 3 years ago
- Placeholder for my detection repo and misc detection engineering content☆42Updated last year
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆64Updated 3 years ago
- My Malware Analysis Reports☆23Updated 3 years ago
- ☆85Updated 2 years ago
- Default Detections for EDR☆96Updated last year
- ☆27Updated 4 years ago
- Tradecraft Development Fundamentals☆40Updated 4 years ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆74Updated 3 years ago
- Create a cool process tree like https://twitter.com/ACEResponder.☆35Updated 2 years ago
- Quickly search for references to a GUID in DLLs, EXEs, and drivers☆75Updated 3 years ago
- A curated list of tools and techniques written from experience in weaponization of malware☆37Updated last year
- ☆100Updated 11 months ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆31Updated 3 years ago
- A recreation of the "Nobelium" malware based on Microsofts Malware analysis - Part 1: PDF2Pwn☆101Updated 2 years ago
- CyberWarFare Labs hands-on workshop on the topic "Detecting Adversarial Tradecrafts/Tools by leveraging ETW"☆50Updated 3 years ago
- Yara Rules for Modern Malware☆79Updated last year
- Fraktal's Ransomware Emulator☆102Updated last year
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆87Updated 3 years ago
- Petaq - Purple Team Command & Control Server☆105Updated 2 years ago
- ☆43Updated 3 years ago
- A Cobalt Strike Scanner that retrieves detected Team Server beacons into a JSON object☆170Updated 2 years ago
- AdHoc solutions☆48Updated 2 years ago
- pypykatz plugin for volatility3 framework☆42Updated 3 months ago
- Extract payload URLs from Follina (CVE-2022-30190) docx and rtf files☆31Updated 3 years ago
- Weaponising C# - Fundamentals Training Content☆70Updated 4 years ago