shantanu561993 / ParentProcessIDSpoofLinks
Spoof parent process ID
☆13Updated 6 years ago
Alternatives and similar repositories for ParentProcessIDSpoof
Users that are interested in ParentProcessIDSpoof are comparing it to the libraries listed below
Sorting:
- C# code to run PIC using CreateThread☆17Updated 6 years ago
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 5 years ago
- A C port of b33f's UrbanBishop☆38Updated 4 years ago
- Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.☆15Updated 6 years ago
- module for certexfil☆15Updated 2 years ago
- Retrieve the IIS Application Pool Credentials. Relies on the WebAdministration PowerShell Module.☆14Updated 7 years ago
- ☆48Updated 4 years ago
- Loading and executing shellcode in C# without PInvoke.☆22Updated 3 years ago
- A PoC to show how to add code to C# and dotNet and make it reusable for Red Team operations. Maybe one day it will be the largest collect…☆17Updated 5 years ago
- Ransoblin (Ransomware Bokoblin)☆18Updated 4 years ago
- ☆14Updated 5 years ago
- PoC code from blog☆16Updated 5 years ago
- Proof of concept - Covert Channel using Windows Filtering Platform (C#)☆21Updated 3 years ago
- A tool for leveraging elevated acess over a computer to boot the computer into Windows Safe Mode, alter settings, and then boot back into…☆16Updated 3 years ago
- Spin up a reverse proxy quickly on Heroku☆14Updated 4 years ago
- Dump Lsass Memory Using a Reflective Dll☆14Updated 3 years ago
- A tool to sync mythic events with ghostwriter oplog.☆13Updated 7 months ago
- ☆15Updated last year
- ☆28Updated 7 years ago
- Dynamic and extensible shell code generator with multiple output types which can be formatted in binary, hexadecimal, and the typical she…☆19Updated 5 years ago
- A more advanced free and open .NET obfuscator using dnlib.☆10Updated 2 years ago
- SSDP Service Discovery☆17Updated 6 years ago
- Files related to my presentation at SigSegV2 conference in 2019. You can find related papers on my blog☆13Updated 5 years ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆52Updated 6 years ago
- Showing how proof-of-work can be used to evade antivirus emulators.☆11Updated 7 months ago
- ☆18Updated 3 years ago
- This is a 64 bit VBA implementation of Christophe Tafani-Dereeper's original VBA code described in his blog @ https://blog.christophetd.f…☆21Updated 5 years ago
- A BOF for enumerating version information for DLLs associated for a Beacon process.☆15Updated 3 years ago
- Receive the status of Windows Defender Credential Guard on network hosts.☆27Updated 4 years ago
- Code for blog written at 0xdarkvortex.dev Red Team TTPs Part 2☆18Updated 4 years ago