nccgroup / mimikatz-detector-busylightLinks
USB HID driver emulation with PID/VID (0x3bca/0x27bb) of Plenom A/S Busylight Alpha, that is supported by Mimikatz. When mimikatz is executed, a thread is spwaned by default that tries to locate one of the busylights that is supported. All HID devices are enumerated, if PID/VID is matching then packets are sent to flash the busylight in differen…
☆20Updated 3 years ago
Alternatives and similar repositories for mimikatz-detector-busylight
Users that are interested in mimikatz-detector-busylight are comparing it to the libraries listed below
Sorting:
- The repository accompanying the Buer Emulation workshop☆23Updated 4 years ago
- A Canary which fires when uninstalled☆34Updated 4 years ago
- Collection of generic YARA rules☆16Updated 2 months ago
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆28Updated 2 years ago
- Repository for LNK stuff☆31Updated 3 years ago
- A mini project to exfiltrate data via QR codes☆19Updated 2 months ago
- Firebase Domain Front Code☆21Updated 4 years ago
- Continuous kerberoast monitor☆45Updated 2 years ago
- Tricard - Malware Sandbox Fingerprinting☆20Updated last year
- WMI SA stuffs☆30Updated 3 years ago
- Registry hive parsing the async way☆21Updated this week
- Code for profiling sandboxes - Initially an idea to profile sandboxes, the code is written to take enviromental variables and send them b…☆21Updated 2 months ago
- Kibana app for RedELK☆17Updated 2 years ago
- Tools for offensive security of NetBackup infrastructures☆42Updated 2 years ago
- Proof-of-Concept to evade auditd by writing /proc/PID/mem☆23Updated 2 years ago
- Tools for playing w/ CobaltStrike config - extractin, detection, processing, etc...☆29Updated 2 years ago
- Random scripts for azure stuff☆12Updated 3 years ago
- Dumping credentials through windbg and pykd☆41Updated 2 years ago
- A collection of my presentation materials.☆17Updated last year
- A tool to sync mythic events with ghostwriter oplog.☆14Updated 11 months ago
- ☆12Updated 3 years ago
- Serving files with conditions, serverside keying and more.☆18Updated 3 years ago
- ☆12Updated 4 years ago
- ☆23Updated 2 years ago
- just manipulatin these here tokens yes sir nothing weird☆22Updated 3 years ago
- A fast wordlist to nthash converter☆21Updated 3 years ago
- C# Implementation of Jared Atkinson's Get-InjectedThread.ps1☆54Updated 4 years ago
- Loading and executing shellcode in C# without PInvoke.☆22Updated 3 years ago
- Scans a list of raccoon servers from Tria.ge and extracts the config☆15Updated 2 years ago
- CyberWarFare Labs hands-on workshop on the topic "Detecting Adversarial Tradecrafts/Tools by leveraging ETW"☆51Updated 3 years ago