rajiv2790 / FalconEyeLinks
☆304Updated 4 years ago
Alternatives and similar repositories for FalconEye
Users that are interested in FalconEye are comparing it to the libraries listed below
Sorting:
- Yet another variant of Process Hollowing☆422Updated 4 months ago
- Kernel Exploits☆259Updated 4 years ago
- PoC memory injection detection agent based on ETW, for offensive and defensive research purposes☆294Updated 4 years ago
- Sysmon-Like research tool for ETW☆378Updated 3 years ago
- Security product hook detection☆319Updated 4 years ago
- Find patterns of vulnerabilities on Windows in order to find 0-day and write exploits of 1-days. We use Microsoft security updates in ord…☆190Updated 4 years ago
- Expriments☆476Updated last year
- Tools and technical write-ups describing attacking techniques that rely on concealing code execution on Windows☆218Updated 3 years ago
- Extract Windows Defender database from vdm files and unpack it☆471Updated 4 months ago
- Tools and PoCs for Windows syscall investigation.☆367Updated 2 weeks ago
- A helper utility for creating shellcodes. Cleans MASM file generated by MSVC, gives refactoring hints.☆184Updated 7 months ago
- ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detecti…☆318Updated last year
- Enumerating and removing kernel callbacks using signed vulnerable drivers