naksyn / talksLinks
Repo containing my public talks
☆23Updated 2 years ago
Alternatives and similar repositories for talks
Users that are interested in talks are comparing it to the libraries listed below
Sorting:
- Small tool to play with IOCs caused by Imageload events☆43Updated 2 years ago
- Fork of Get-InjectedThread - https://gist.github.com/jaredcatkinson/23905d34537ce4b5b1818c3e6405c1d2☆46Updated 2 years ago
- ☆76Updated 3 years ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆58Updated 3 years ago
- ☆30Updated 3 months ago
- A more reliable way of resolving syscall numbers in Windows☆52Updated last year
- ☆47Updated 6 months ago
- MITRE TTPs derived from Conti's leaked playbooks from XSS.IS☆40Updated 4 years ago
- ☆77Updated last year
- ☆23Updated 2 years ago
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆50Updated last year
- ☆61Updated last year
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 9 months ago
- Bypass Malware Time Delays☆108Updated 3 years ago
- A C implementation of the Sektor7 "A Thief" Windows privesc technique.☆67Updated 3 years ago
- Golang bindings for PE-sieve☆42Updated 2 years ago
- a tiny program to consume from ETW providers for research☆53Updated 11 months ago
- ☆17Updated 2 years ago
- Ghosting-AMSI☆18Updated 7 months ago
- GhostLoader - AppDomainManager - Injection - 攻壳机动队☆53Updated 5 years ago
- ☆108Updated last year
- ☆70Updated 2 years ago
- Compile shellcode into an exe file from Windows or Linux.☆70Updated 6 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated last year
- DLL Unlinking from InLoadOrderModuleList, InMemoryOrderModuleList, InInitializationOrderModuleList, and LdrpHashTable☆58Updated last year
- Piece of code to detect and remove hooks in IAT☆65Updated 3 years ago
- A pure C version of SymProcAddress☆30Updated last year
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆26Updated 2 years ago
- ☆122Updated 4 years ago
- Reverse Engineering and Debugging Malware☆32Updated 2 years ago