huntandhackett / sysmon-indepth
Understanding the operation and limitations of Sysmon's events
☆14Updated 2 years ago
Alternatives and similar repositories for sysmon-indepth:
Users that are interested in sysmon-indepth are comparing it to the libraries listed below
- ☆16Updated 5 months ago
- Beacon Debugger☆38Updated 2 months ago
- A work in progress BOF/COFF loader in Rust☆46Updated last year
- Repo that holds random POCs☆48Updated last year
- rust clr heap encryption (https://github.com/lap1nou/CLR_Heap_encryption), but no heap encryption.☆13Updated last year
- based on https://gitlab.com/ORCA000/snaploader☆42Updated last month
- ☆13Updated 2 years ago
- A COFF Loader written in Rust☆43Updated this week
- Donut generator in rust.☆25Updated 2 years ago
- Load a dynamic library from memory using a fuse mount☆30Updated last year
- Exploiting the KsecDD Windows driver through Server Silos☆37Updated 2 months ago
- ☆13Updated 11 months ago
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated last year
- improved shellcode template for b1tg/rust-windows-shellcode☆27Updated 3 years ago
- Get your data from the resource section manually, with no need for windows apis☆56Updated 2 months ago
- BYOVD collection☆21Updated 9 months ago
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆51Updated 2 weeks ago
- A reimplementation of Cobalt Strike's Beacon Object File (BOF) Loader☆41Updated last year
- Indirect NT syscalls LSASS dumper.☆40Updated last year
- Windows RPC example calling stubs generated from MS-LSAT and MS-LSAD☆24Updated last year
- Rust Implementation of SharpDllProxy for DLL Proxying Technique☆29Updated 2 years ago
- old postex for grabbing a krbtgs for my current user☆29Updated last year
- Dynamically resolve API function addresses at runtime in a secure manner.☆46Updated 3 months ago
- ☆21Updated 8 months ago
- Persistence via Shell Extensions☆64Updated last year
- A method to execute shellcode using RegisterWaitForInputIdle API.☆52Updated last year
- A VSCode plugin to assist with BOF development.☆32Updated 5 months ago
- Sliver agent rewritten in C++☆43Updated 4 months ago
- ☆49Updated 2 years ago