skelsec / pypykatz-volatility3Links
pypykatz plugin for volatility3 framework
☆46Updated 8 months ago
Alternatives and similar repositories for pypykatz-volatility3
Users that are interested in pypykatz-volatility3 are comparing it to the libraries listed below
Sorting:
- GhostLoader - AppDomainManager - Injection - 攻壳机动队☆53Updated 5 years ago
- ☆18Updated 4 years ago
- Smart Card PIN swiping DLL☆78Updated 5 years ago
- WhoAmI by asking the LDAP service on a domain controller.☆64Updated 3 years ago
- ☆37Updated 3 years ago
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆90Updated 3 years ago
- ☆43Updated 3 years ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆70Updated last year
- IOXIDResolver from AirBus Security/PingCastle☆51Updated 5 years ago
- load dumped csharp binaries as assemblies and launch them in memory☆28Updated last year
- ☆39Updated 3 years ago
- Cobalt Strike BOF to list Windows Pipes & return their Owners & DACL Permissions☆53Updated 4 years ago
- .NET project for installing Persistence☆63Updated 3 years ago
- ☆23Updated 3 years ago
- ☆55Updated 4 years ago
- A library to parse, modify, and implement Malleable C2 profiles☆27Updated 6 years ago
- ☆60Updated 4 years ago
- A simple proof of concept for detecting use of Cobalt Strike's execute-assembly☆59Updated 3 years ago
- ☆66Updated 2 years ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆88Updated 3 years ago
- ☆36Updated last year
- ☆78Updated 3 years ago
- ☆33Updated 3 years ago
- Some of my custom "tools".☆28Updated 3 years ago
- WptsExtensions.dll for exploiting DLL hijacking of the task scheduler.☆55Updated 4 years ago
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆33Updated 4 years ago
- A basic meterpreter protocol stager using the libpeconv library by hasherezade for reflective loading☆84Updated 3 years ago
- A PoC~ish of https://elastic.github.io/security-research/malware/2022/01/01.operation-bleeding-bear/article/☆31Updated last year
- Simple PoC Python agent to showcase Havoc C2's custom agent interface. Not operationally safe or stable. Released with accompanying blog …☆86Updated 2 years ago
- Timestomping module: overwrite file create/modify times in .NET (no pinvoke)☆27Updated 4 years ago