iamagarre / BadExclusionsLinks
BadExclusions is a tool to identify folder custom or undocumented exclusions on AV/EDR
☆20Updated last year
Alternatives and similar repositories for BadExclusions
Users that are interested in BadExclusions are comparing it to the libraries listed below
Sorting:
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- A simple rpc2socks alternative in pure Go.☆31Updated last year
- ☆18Updated last year
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆34Updated 2 years ago
- Example of using Sleep to create better named pipes.☆41Updated 2 years ago
- ☆37Updated 11 months ago
- ☆47Updated 2 years ago
- An interactive TUI tool to create Brute Ratel C4 profiles based on BURP browsing data.☆29Updated 7 months ago
- ☆29Updated last year
- Cobalt Strike Beacon Object File to enable the webdav client service on x64 windows hosts☆23Updated 2 years ago
- Ludus role for deploying a Mythic Teamserver onto Linux servers☆23Updated 9 months ago
- Creation and removal of Defender path exclusions and exceptions in C#.☆32Updated 2 years ago
- Watches the Downloads folder for any new files and inserts it into Nemesis for analysis.☆15Updated last year
- A simple BOF that disables some logging with NtSetInformationProcess☆14Updated 2 years ago
- BOF for C2 framework☆44Updated last year
- Windows Access token manipulation tool made in C#☆24Updated 4 months ago
- ☆23Updated last year
- ☆38Updated 8 months ago
- Parser and reconciliation tooling for large Active Directory environments.☆33Updated 10 months ago
- Aggressor script to automatically download and load an arsenal of open source and private Cobalt Strike tooling.☆45Updated last year
- An improvement and a different approach to Mockingjay Self-Injection.☆35Updated last year
- PowerShell Implementation of ADFSDump to assist with GoldenSAML☆37Updated 2 weeks ago
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆47Updated last year
- Cobalt Strike notifications via NTFY.☆15Updated last year
- in-process powershell runner for BRC4☆48Updated 2 years ago
- string encryption in Nim☆20Updated last year
- Repository to gather the BOF files I will be developing☆11Updated last year
- A collection of sample code used in some experiments with Sliver C2☆16Updated 2 years ago
- Standalone Cobalt Strike operation logging Aggressor script for Ghostwriter 2.0+☆35Updated 3 weeks ago
- ☆29Updated last year