nullsection / SharpETW-Patch
☆22Updated last year
Alternatives and similar repositories for SharpETW-Patch:
Users that are interested in SharpETW-Patch are comparing it to the libraries listed below
- Repo containing my public talks☆22Updated last year
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆53Updated 2 years ago
- ☆14Updated 8 months ago
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆51Updated 8 months ago
- The repository accompanying the Buer Emulation workshop☆23Updated 3 years ago
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago
- MITRE TTPs derived from Conti's leaked playbooks from XSS.IS☆35Updated 3 years ago
- Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level☆25Updated 2 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆66Updated 6 months ago
- Python tool to find vulnerable AD object and generating csv report☆26Updated 2 years ago
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆21Updated 6 months ago
- ☆47Updated last year
- A VSCode devcontainer for development of COFF files with batteries included.☆47Updated last year
- PoC MSI payload based on ASEC/AhnLab's blog post☆22Updated 2 years ago
- Python module for running BOFs☆64Updated last year
- a tiny program to consume from ETW providers for research☆45Updated 2 weeks ago
- Collection of shellcode injection techniques packed in a D/Invoke weaponized DLL☆20Updated 2 years ago
- Bloodhound agent for Mythic☆16Updated 4 months ago
- ☆38Updated 2 years ago
- Scripts to interact with Microsoft Graph APIs☆32Updated 2 months ago
- ☆24Updated 3 years ago
- Nemesis agent for Mythic☆26Updated 4 months ago
- Invoke-AtomicAssessment is a powerful tool designed to facilitate adversary emulation by leveraging Atomic Red Team.☆31Updated last week
- ☆23Updated 8 months ago
- Golang PoC that sandboxes Defender (or other PPL) by setting its token integrity to Untrusted.☆11Updated 2 years ago
- Modified-Thycotic-Secret-Stealer for use with DPAPI and offline Decryption☆18Updated 2 years ago