SysEye是一个window上的基于att&ck现代EDR设计思想的威胁响应工具.有效检测常见的未知威胁与已知威胁.防守方的利剑
☆63Aug 23, 2022Updated 3 years ago
Alternatives and similar repositories for DuckSysEye
Users that are interested in DuckSysEye are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 鸭鸭咖啡馆主要项目☆16Sep 29, 2022Updated 3 years ago
- ksc4cpp is a shellcode framework for windows kernel based on C++☆22Feb 10, 2023Updated 3 years ago
- 简单安排一下 autochk.sys 这个rootkit☆73Mar 7, 2023Updated 3 years ago
- 戎码之眼是一个window上的基于att&ck模型的威胁监控工具.有效检测常见的未知威胁与已知威胁.防守方的利剑☆536Oct 25, 2023Updated 2 years ago
- Dump PDB Symbols including support for Bochs Debugging Format (with wine support)☆14Aug 11, 2023Updated 2 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- win32kbase!NtDCompositionCommitSynchronizationObject and win32kbase!NtGdiGetCertificate☆16Oct 14, 2021Updated 4 years ago
- https://key08.com/index.php/2021/10/19/1375.html☆71May 11, 2022Updated 3 years ago
- golang免杀捆绑器☆22Apr 7, 2022Updated 3 years ago
- 检测绝大部分所谓的内存免杀马☆734Sep 15, 2022Updated 3 years ago
- tcp端口复用程序☆72Aug 7, 2022Updated 3 years ago
- 40行代码检测到大部分CobaltStrike的shellcode☆294Jul 25, 2021Updated 4 years ago
- 让Etwhook再次伟大! Make InfinityHook Great Again!☆146Jun 24, 2021Updated 4 years ago
- 蓝队应急工具☆542Jun 10, 2024Updated last year
- 无影脚 - 命令行下的日志文件处理工具☆50Nov 15, 2022Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- 红队应急响应工具(支持麒麟系统)☆54Aug 13, 2025Updated 7 months ago
- CVE-2021-4034 for single commcand☆10May 31, 2022Updated 3 years ago
- enc8 密码碰撞脚本☆33Jan 31, 2023Updated 3 years ago
- Microsoft Exchange Server SSRF漏洞(CVE-2021-26855)☆36Mar 6, 2021Updated 5 years ago
- 沙箱测试,测评国内常见沙箱的代码与结论☆107Jul 3, 2021Updated 4 years ago
- mash hypervisor host pml4☆17Jun 22, 2022Updated 3 years ago
- A simple parser(library) which extracts shimcache data from windows.☆15May 20, 2019Updated 6 years ago
- Druid 密文解密工具☆136Dec 9, 2020Updated 5 years ago
- 废物自救项目!一起向光而行!!!☆11May 7, 2022Updated 3 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能, 而不用关心底层…☆376Feb 19, 2025Updated last year
- 一款辅助安全研发在日常工作中渗透测试、安全研究、安全开发等工作的工具!☆13Nov 20, 2023Updated 2 years ago
- 通过gzip一边压缩一边使用tcp上传文件夹。☆17Nov 12, 2022Updated 3 years ago
- Py写的tsh的流量加解密过程。☆28Aug 15, 2022Updated 3 years ago
- 参考taviso的代码逆向一下mpengine.dll☆20Jun 30, 2022Updated 3 years ago
- 利用物理内存映射,实现虚拟内存的伪隐藏☆86Sep 15, 2022Updated 3 years ago
- 隐藏可执行内存☆267Apr 27, 2025Updated 11 months ago
- HookDetection☆45Sep 3, 2021Updated 4 years ago
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆98Mar 30, 2023Updated 2 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Antenna是58同城安全团队打造的一款辅助安全从业人员验证网络中多种漏洞是否存在以及可利用性的工具。其基于带外应用安全测试(OAST)通过任务的形式,将不同漏洞场景检测能力通过插件的形式进行集合,通过与目标进行out-bind的数据通信方式进行辅助检测。☆721Jun 6, 2023Updated 2 years ago
- 一个用于隐藏C2的、开箱即用的反向代理服务器。旨在省去繁琐的配置Nginx服务的过程。☆13Feb 14, 2022Updated 4 years ago
- Java XMLDecoder payload generator☆16Jul 27, 2021Updated 4 years ago
- Call NtCreateUserProcess directly as normal.☆77May 17, 2022Updated 3 years ago
- 机器学习检测webshell☆70Jun 19, 2021Updated 4 years ago
- Hades HIDS/HIPS for Windows☆309Oct 10, 2025Updated 5 months ago
- Using NtCreateFile and NtDeviceIoControlFile to realize the function of winsock(利用NtCreateFile和NtDeviceIoControlFile 实现winsock的功能)☆128Sep 9, 2022Updated 3 years ago