p0dalirius / volatility3-symbols
Memory mapping profiles for forensic analysis using volatility 3
☆26Updated 2 years ago
Alternatives and similar repositories for volatility3-symbols:
Users that are interested in volatility3-symbols are comparing it to the libraries listed below
- Memory mapping profiles for forensic analysis using volatility 2☆47Updated 2 years ago
- Local & remote Windows DLL Proxying☆162Updated 9 months ago
- ☆114Updated last year
- ☆92Updated last year
- A tool to Impersonate logged on users without touching LSASS (Including non-Interactive sessions).☆93Updated 2 years ago
- ☆59Updated last year
- ☆139Updated 7 months ago
- ☆182Updated 2 years ago
- ☆147Updated last year
- ☆150Updated 3 months ago
- This repository contains a list of python scripts to work with Microsoft RPC for research purposes.☆45Updated last month
- The program uses the Windows API functions to traverse through directories and locate DLL files with RWX section☆99Updated last year
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆89Updated 10 months ago
- Collection of Volatility2 profiles, generated against Linux kernels.☆36Updated 3 weeks ago
- Powershell Linter☆50Updated last week
- Detect EDR's exceptions by inspecting processes' loaded modules☆130Updated last year
- ☆112Updated 2 years ago
- ☆75Updated 11 months ago
- Create Anti-Copy DRM Malware☆54Updated 7 months ago
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆147Updated last year
- 🐾Dogwalk PoC (using diagcab file to obtain RCE on windows)☆80Updated 2 years ago
- A collection of tools and detections for the Sliver C2 Frameworj☆118Updated last year
- Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement☆160Updated 3 months ago
- Rusty Impersonate☆95Updated last year
- ☆63Updated last year
- Detect WFP filters blocking EDR communications☆85Updated last year
- A simple commandline application to automatically decrypt strings from Obfuscator protected binaries☆39Updated 9 months ago
- ☆162Updated last year
- Find DLLs with RWX section☆78Updated last year
- ☆72Updated 2 years ago