nccgroup / mnemosyne
A Generic Windows Memory Scraping Tool
☆70Updated 7 years ago
Alternatives and similar repositories for mnemosyne:
Users that are interested in mnemosyne are comparing it to the libraries listed below
- Open Source Office Malware Generation & Polymorphic Engine for Red Teams and QA testing☆95Updated 7 years ago
- some pocs for antivirus evasion☆130Updated last year
- ☆114Updated 7 years ago
- PoC dlls for Task Scheduler COM Hijacking☆92Updated 8 years ago
- Loads the AutoIt DLL and PowerShell assemblies into memory and executes the specified keystrokes☆61Updated 7 years ago
- ☆51Updated 6 years ago
- PoC to tunnel the Meterpreter reverse HTTP shell over RDP Virtual Channels☆66Updated 10 years ago
- x86-64 Windows shellcode that recreates the Jurassic Park hacking scene (Ah, ah, ah... you didn't' say the magic word!)☆83Updated 4 years ago
- ☆59Updated 5 years ago
- Environmental (and http) keying for scripting languages☆39Updated 6 years ago
- POC Highlighting Obfuscation Techniques used by FIN threat actors based on cmd.exe's replace functionality and cmd.exe/powershell.exe's s…☆103Updated 7 years ago
- ☆84Updated 9 years ago
- Another Repo of Malware. Enjoy. <3☆59Updated 6 years ago
- ☆58Updated 7 years ago
- MS17-012 - COM Session Moniker EoP Exploit running within MSBuild.exe☆59Updated 8 years ago
- Powershell Persistence Locator☆66Updated 8 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆135Updated 7 years ago
- An automated collection and analysis of malware from my honeypots.☆25Updated 7 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆85Updated 7 years ago
- Simple DDE object detector☆56Updated 7 years ago
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆43Updated 7 years ago
- When CactusTorch meets WebDavDelivery and obfuscation☆63Updated 7 years ago
- ☆53Updated 9 years ago
- Some sample code from my Zero Nights 2017 presentation.☆62Updated 7 years ago
- Talk given at DerbyCon and RuxCon 2016☆22Updated 8 years ago
- ☆68Updated 7 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆55Updated 7 years ago
- NCC Group's analysis and exploitation of CVE-2017-8759 along with further refinements☆96Updated 7 years ago
- Make Windows LNK file with python (pylnk)☆66Updated 8 years ago
- NCC Group Ransomware Simulator☆69Updated 8 years ago