Detect possible sysmon logging bypasses given a specific configuration
☆110Dec 26, 2018Updated 7 years ago
Alternatives and similar repositories for sysmon-config-bypass-finder
Users that are interested in sysmon-config-bypass-finder are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Evade sysmon and windows event logging☆626Apr 8, 2020Updated 6 years ago
- A C# tool to send emails through Outlook from the command line or in memory☆31Jun 17, 2020Updated 6 years ago
- Miscellaneous C-Sharp projects for red team activities☆22Aug 12, 2022Updated 4 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆264Nov 30, 2018Updated 7 years ago
- ☆351Mar 19, 2021Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A C# tool for enumerating remote access policies through group policy.☆72Apr 18, 2019Updated 7 years ago
- Sysmon Tools for PowerShell☆233Aug 17, 2018Updated 8 years ago
- Automate AV evasion by calling AMSI☆87May 31, 2023Updated 3 years ago
- OSSEM Modular☆27Jun 29, 2020Updated 6 years ago
- PowerKrabsEtw is a PowerShell interface for doing real-time ETW tracing.☆102Nov 17, 2020Updated 5 years ago
- An Insider Threat Toolkit☆156Dec 17, 2018Updated 7 years ago
- A C# tool to search through a running instance of Outlook for keywords☆110Jan 14, 2021Updated 5 years ago
- A C# implementation of PrivExchange by @_dirkjan.☆155Mar 15, 2019Updated 7 years ago
- A PowerShell script to prevent Sysmon from writing its events☆16Apr 23, 2020Updated 6 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- RemotePSpy provides live monitoring of remote PowerShell sessions, which is particularly useful for older (pre-5.0) versions of PowerShel…☆19Mar 12, 2020Updated 6 years ago
- Utilities for Sysmon☆1,661Apr 4, 2026Updated 5 months ago
- Test Blue Team detections without running any attack.☆271May 2, 2024Updated 2 years ago
- ☆98Mar 16, 2016Updated 10 years ago
- All materials from our Black Hat 2018 "Subverting Sysmon" talk☆134Aug 10, 2018Updated 8 years ago
- Protect your servers with a secret header☆28Jun 12, 2020Updated 6 years ago
- SharpBox is a C# tool for compressing, encrypting, and exfiltrating data to DropBox using the DropBox API.☆109Jan 20, 2021Updated 5 years ago
- Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.☆944Dec 12, 2023Updated 2 years ago
- Bloodhound Attack Path Automation in CobaltStrike☆325Apr 26, 2020Updated 6 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- SilkETW & SilkService☆40Aug 14, 2019Updated 7 years ago
- Praetorian's public release of our Metasploit automation of MITRE ATT&CK™ TTPs☆729Jan 21, 2020Updated 6 years ago
- Tool for interacting with outlook interop during red team engagements☆145Jun 29, 2021Updated 5 years ago
- Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely☆422Jul 27, 2022Updated 4 years ago
- Invoke-LiveResponse☆150Feb 22, 2022Updated 4 years ago
- A repository that maps API calls to Sysmon Event ID's.☆122Nov 14, 2022Updated 3 years ago
- Automated deployment of Windows and Active Directory test lab networks. Useful for red and blue teams.☆490Feb 16, 2019Updated 7 years ago
- Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into …☆828Nov 5, 2023Updated 2 years ago
- See adversary, do adversary: Simple execution of commands for defensive tuning/research (now with more ELF on the shelf)☆109Feb 12, 2023Updated 3 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Windows Events Attack Samples☆2,625Jan 24, 2023Updated 3 years ago
- Capture screenshots from .NET using .NET methods or Windows API calls☆66Mar 9, 2020Updated 6 years ago
- ☆13Jun 1, 2021Updated 5 years ago
- A collection of various tools for red-teaming exercises. A mix of C#, Powershell, & Python☆106Jul 26, 2024Updated 2 years ago
- A little scanner to check the LDAP Signing state☆46Aug 2, 2021Updated 5 years ago
- DoHC2 allows the ExternalC2 library from Ryan Hanson (https://github.com/ryhanson/ExternalC2) to be leveraged for command and control (C2…☆450Aug 7, 2020Updated 6 years ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆326Mar 26, 2019Updated 7 years ago