sidaf / moonshine
☆69Updated last year
Alternatives and similar repositories for moonshine:
Users that are interested in moonshine are comparing it to the libraries listed below
- ☆87Updated 2 years ago
- Simple EDR that injects a DLL into a process to place a hook on specific Windows API☆90Updated last year
- Slide decks and/or materials from conference presentations☆56Updated 2 years ago
- Microsoft Graph API post-exploitation toolkit☆94Updated 8 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆90Updated 9 months ago
- ☆48Updated last year
- ☆109Updated 4 months ago
- ☆71Updated 7 months ago
- ☆115Updated 3 years ago
- Automatically create an operation log of your shell! Supports Linux (Bash/Zsh) and Windows (PowerShell/CMD).☆28Updated 3 weeks ago
- Living Off the Foreign Land setup scripts☆67Updated last month
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆79Updated 2 years ago
- malleable profile generator GUI for Havoc☆56Updated last year
- BOF to decrypt Signal Desktop chat logs☆62Updated last month
- ☆49Updated 4 months ago
- Your Skyfall Infrastructure Pack☆64Updated 2 weeks ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆84Updated 9 months ago
- ☆71Updated last year
- A collection of source code, binaries, and compilation scripts designed to bypass detection☆25Updated 2 years ago
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated last year
- Source code and examples for PassiveAggression☆55Updated 9 months ago
- ☆59Updated last year
- quASAR: ASAR manipulation made easy☆34Updated 2 years ago
- Find DLLs with RWX section☆78Updated last year
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆135Updated 7 months ago
- BadExclusionsNWBO is an evolution from BadExclusions to identify folder custom or undocumented exclusions on AV/EDR☆75Updated last year
- Utilities for obfuscating shellcode☆55Updated last week
- Lateral Movement☆123Updated last year
- AAD related enumeration in Nim☆129Updated last year
- Abuse Azure API permissions for red teaming☆61Updated 2 years ago