robindimyan / apthowto
Liberating dem proprietary APT implants
☆21Updated 5 years ago
Alternatives and similar repositories for apthowto:
Users that are interested in apthowto are comparing it to the libraries listed below
- ☆23Updated 4 years ago
- Malware vulnerability research. Coming soon..☆12Updated 4 years ago
- SilkETW & SilkService☆40Updated 5 years ago
- Trace ScriptBlock execution for powershell v2☆40Updated 5 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- Presentation materials for talks I've given.☆20Updated 5 years ago
- ☆10Updated 4 years ago
- Tool for finding KPOT XOR key using known-plaintext attack.☆13Updated 4 years ago
- TA505 unpacker Python 2.7☆47Updated 4 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- PE File Blessing - To continue or not to continue☆86Updated 5 years ago
- ☆26Updated last year
- Python emulator for Excel XLM macros.☆18Updated 4 years ago
- C# User Simulation☆32Updated 2 years ago
- Simple shellcode injector.☆14Updated 6 years ago
- various slides and presentations I've worked on☆18Updated 11 months ago
- Cobalt Strike log state tracking, parsing, and storage☆23Updated 5 years ago
- Walking the PEB in VBA☆22Updated 4 years ago
- Script which is able to decrypt data sent to AzoRult 3.3 Server☆11Updated 4 years ago
- Generates YARA rules to detect malware using API hashing☆17Updated 3 years ago
- Forked and updated with some additional features over the original☆16Updated 3 years ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- This script is used for extracting DDE in docx and xlsx☆12Updated 7 years ago
- A set of commands to bypass Defender (and some other AVs)☆20Updated 5 years ago
- Gives context to a system. Uses EQGRP shadow broker leaked list to give some descriptions to processes.☆42Updated 7 years ago
- Exercises for C# Workshop at Wild West Hackin' Fest 2018 & 2019.☆64Updated 5 years ago
- Protect your servers with a secret header☆29Updated 4 years ago
- Different code-injections techniques under a common tool☆30Updated 4 years ago
- Babel-Shellfish deobfuscates and scans Powershell scripts on real-time right before each line execution.☆42Updated 6 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 6 years ago