naksyn / talks
Repo containing my public talks
☆23Updated last year
Alternatives and similar repositories for talks:
Users that are interested in talks are comparing it to the libraries listed below
- Small tool to play with IOCs caused by Imageload events☆42Updated last year
- ☆45Updated last year
- MITRE TTPs derived from Conti's leaked playbooks from XSS.IS☆37Updated 3 years ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆56Updated 2 years ago
- ☆22Updated last year
- ☆26Updated 2 months ago
- Small visualizator for PE files☆69Updated last year
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆38Updated 9 months ago
- ☆33Updated 3 years ago
- ☆27Updated 5 months ago
- Fork of Get-InjectedThread - https://gist.github.com/jaredcatkinson/23905d34537ce4b5b1818c3e6405c1d2☆40Updated last year
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆61Updated 4 months ago
- Read ETW Provider events. Inspired by ETWExplorer by Pavel Yosifovich☆16Updated 10 months ago
- A proof-of-concept re-assembler for reverse VNC traffic.☆25Updated last year
- quASAR: ASAR manipulation made easy☆37Updated 2 years ago
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆52Updated 11 months ago
- ☆20Updated last year
- a tiny program to consume from ETW providers for research☆47Updated 4 months ago
- ☆14Updated last year
- ☆59Updated last year
- Quickly search for references to a GUID in DLLs, EXEs, and drivers☆74Updated 3 years ago
- Simple and sane cryptographic wrapper library.☆27Updated 2 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆67Updated 10 months ago
- Dumping LSASS by Unhooking MiniDumpWriteDump by getting a fresh DbgHelp.dll copy from the disk , plus functions and strings obfuscation☆31Updated 2 years ago
- Piece of code to detect and remove hooks in IAT☆63Updated 2 years ago
- Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and en…☆40Updated 7 months ago
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆44Updated 2 years ago
- RDLL for Cobalt Strike beacon to silence sysmon process☆88Updated 2 years ago
- A pure C version of SymProcAddress☆27Updated last year
- A set of rootkit-like abilities for unprivileged users, and vulnerabilities based on the DOT-to-NT path conversion known issue☆98Updated last year