jsecurity101 / JonMon
☆216Updated last month
Alternatives and similar repositories for JonMon:
Users that are interested in JonMon are comparing it to the libraries listed below
- ☆236Updated 10 months ago
- ☆155Updated 10 months ago
- ☆200Updated 4 months ago
- A collection of tools, scripts and personal research☆127Updated 8 months ago
- Python tool to check rootkits in Windows kernel☆195Updated 3 weeks ago
- A ProcessMonitor visualization application written in rust.☆177Updated last year
- Elastic Security Labs releases☆61Updated this week
- Active C&C Detector☆152Updated last year
- This repository is meant to catalog network and host artifacts associated with various EDR products "shell" and response functionalities.☆76Updated 6 months ago
- A C# based tool for analysing malicious OneNote documents☆111Updated last year
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆121Updated last month
- Retired TrustedSec Capabilities☆246Updated 4 months ago
- Tools for analyzing EDR agents☆221Updated 9 months ago
- Combining Sealighter with unpatched exploits to run the Threat-Intelligence ETW Provider☆169Updated 2 years ago
- Unprotect is a collaborative platform dedicated to uncovering and documenting malware evasion techniques. We invite you to join us in thi…☆158Updated last month
- Repository of Yara Rules☆103Updated last month
- Find potential DLL Sideloads on your windows computer☆176Updated 2 months ago
- A small program written in C that is designed to load 32/64-bit shellcode and allow for execution or debugging. Can also output PE files …☆141Updated 8 months ago
- A PoC of the ContainYourself research presented in DEFCON 31, which abuses the Windows containers framework to bypass EDRs.☆308Updated last year
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆118Updated 11 months ago
- ☆112Updated last month
- ☆297Updated 4 months ago
- A repository to share publicly available Velociraptor detection content☆138Updated this week
- A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you com…☆167Updated last month
- Yara Rules for Modern Malware☆73Updated last year
- ☆139Updated 7 months ago
- A collection of small scripts and tools for deobfuscation and malware analysis.☆66Updated last year
- Rules shared by the community from 100 Days of YARA 2024☆85Updated 2 months ago
- ☆146Updated last month
- Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-nat…☆136Updated last month