jonny-jhnson / JonMon-LiteLinks
☆47Updated 5 months ago
Alternatives and similar repositories for JonMon-Lite
Users that are interested in JonMon-Lite are comparing it to the libraries listed below
Sorting:
- a tiny program to consume from ETW providers for research☆52Updated 11 months ago
- POC tool to abuse windows server failover clusters☆46Updated 3 months ago
- ☆75Updated 3 years ago
- ☆45Updated 2 years ago
- ☆15Updated last year
- Fork of Get-InjectedThread - https://gist.github.com/jaredcatkinson/23905d34537ce4b5b1818c3e6405c1d2☆46Updated 2 years ago
- ☆77Updated last year
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆50Updated last year
- ☆30Updated 3 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated last year
- ☆70Updated 2 years ago
- ☆23Updated last year
- Command Augmentation support for BOFs and .NET assemblies across agents☆36Updated 5 months ago
- Small tool to play with IOCs caused by Imageload events☆42Updated 2 years ago
- Step-by-step documentation on how to decrypt SCCM database secrets offline☆46Updated last month
- Blog/Journal on how to backdoor VSCode extensions☆75Updated 4 months ago
- example using NtCreateUserProcess in rust☆19Updated 10 months ago
- Parse SDDL strings☆36Updated last year
- AutoRMM is a collection of scripts and instructions we are organizing, to test delivery mechanisms for RMM and screen sharing tools, alo…☆91Updated 4 months ago
- macOS dylib stager☆36Updated 10 months ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆58Updated 3 years ago
- Attack chain emulator. Write recipes for initial access easily☆21Updated 9 months ago
- Extract the Procedures (TTP) from CTI reports☆13Updated 5 months ago
- This repository is meant to catalog network and host artifacts associated with various EDR products "shell" and response functionalities.☆91Updated last year
- a short C code POC to gain persistence and evade sysmon event code registry (creation, update and deletion) REG_NOTIFY_CLASS Registry Cal…☆64Updated 2 years ago
- A python library to create BloodHound OpenGraphs☆37Updated 3 weeks ago
- Quickly search for references to a GUID in DLLs, EXEs, and drivers☆75Updated 3 years ago
- A VSCode devcontainer for development of COFF files with batteries included.☆50Updated 2 years ago
- Repo containing my public talks☆23Updated 2 years ago
- Python module for running BOFs☆79Updated last week