shantanu561993 / ParentProcessIDSpoof
Spoof parent process ID
☆13Updated 6 years ago
Alternatives and similar repositories for ParentProcessIDSpoof:
Users that are interested in ParentProcessIDSpoof are comparing it to the libraries listed below
- C# code to run PIC using CreateThread☆17Updated 6 years ago
- Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.☆15Updated 6 years ago
- ☆48Updated 3 years ago
- A C port of b33f's UrbanBishop☆38Updated 4 years ago
- module for certexfil☆15Updated 2 years ago
- Proof of concept - Covert Channel using Windows Filtering Platform (C#)☆21Updated 3 years ago
- A variation CredBandit that uses compression to reduce the size of the data that must be trasnmitted.☆19Updated 3 years ago
- Spin up a reverse proxy quickly on Heroku☆14Updated 4 years ago
- Loading and executing shellcode in C# without PInvoke.☆20Updated 3 years ago
- ☆11Updated 3 years ago
- ☆15Updated last year
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 5 years ago
- Automatic DLL comment link generation and explaination of the DLL Proxying techniques☆10Updated 3 years ago
- Dump Lsass Memory Using a Reflective Dll☆14Updated 3 years ago
- PoC code from blog☆16Updated 5 years ago
- This is a 64 bit VBA implementation of Christophe Tafani-Dereeper's original VBA code described in his blog @ https://blog.christophetd.f…☆21Updated 5 years ago
- ☆14Updated 5 years ago
- Receive the status of Windows Defender Credential Guard on network hosts.☆27Updated 3 years ago
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆23Updated 4 years ago
- Example of async client/server sockets in .NET 5☆17Updated 3 years ago
- ☆14Updated 3 years ago
- NimSkrull is an adaption from the original Skrull malware anti-copy DRM. Only for the anti-copy feature. (https://github.com/aaaddress1/S…☆12Updated last year
- Ransoblin (Ransomware Bokoblin)☆18Updated 4 years ago
- A simple injector that uses LoadLibraryA☆17Updated 4 years ago
- ☆15Updated 5 years ago
- A tool to sync mythic events with ghostwriter oplog.☆13Updated 5 months ago
- A more advanced free and open .NET obfuscator using dnlib.☆10Updated 2 years ago
- A PoC to show how to add code to C# and dotNet and make it reusable for Red Team operations. Maybe one day it will be the largest collect…☆17Updated 5 years ago
- Retrieve the IIS Application Pool Credentials. Relies on the WebAdministration PowerShell Module.☆14Updated 7 years ago
- Modifies machine.config for persistence after installing signed .net assembly onto GAC☆13Updated 3 years ago