sonofagl1tch / MalwareResearch
This directory contains random scripts from threat hunting or malware research
☆11Updated 7 years ago
Alternatives and similar repositories for MalwareResearch
Users that are interested in MalwareResearch are comparing it to the libraries listed below
Sorting:
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 5 years ago
- Automated Payload Test Controller☆10Updated 7 years ago
- ☆12Updated 3 years ago
- module for certexfil☆15Updated 2 years ago
- ☆10Updated 7 years ago
- This script will pull and analyze syscalls in given application(s) allowing for easier security research purposes☆21Updated 4 years ago
- Speaking materials from conferences I've given☆9Updated 2 years ago
- Techniques that i have used to evade anti-virus during pen tests.☆13Updated 6 years ago
- ☆17Updated 6 years ago
- A simple, minimal C# windows service implementation that can be used to demonstrate privilege escalation from misconfigured windows servi…☆16Updated 9 years ago
- This is a Shell Script to setup NTLM hash sniffing using the Raspberry Pi Zero. This tool can be used during Red Team assessments by atta…☆23Updated 7 years ago
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated last year
- A PoC to show how to add code to C# and dotNet and make it reusable for Red Team operations. Maybe one day it will be the largest collect…☆17Updated 5 years ago
- Exploit Research & Development - Ported Exploits☆11Updated 7 years ago
- My manual analysis of malware families☆13Updated 7 years ago
- Repository of Information sharing on threats and indicators☆12Updated 5 years ago
- Golang C2 Agent PoC utilizing web and social media paltforms to issue command and control and pasting results to PasteBin☆16Updated 5 years ago
- An AV evasion technique using multibyte xor encoding of shellcode☆8Updated 8 years ago
- Exchange your privileges for Domain Admin privs by abusing Exchange☆16Updated 5 years ago
- Create COM Objects backed by Scripts, not DLLs☆9Updated 7 years ago
- Accompanying PowerShell Modules for DevSec Defense Presentation☆29Updated 7 years ago
- Useful Windows and AD tools☆15Updated 3 years ago
- Do the unexpected with AD GPO processing☆9Updated 6 years ago
- Asynchronous MSF RPC API wrapper☆20Updated 2 years ago
- Code for blog written at 0xdarkvortex.dev Red Team TTPs Part 2☆18Updated 4 years ago
- Notes about reverse engineering the Petya2017 ransomware☆18Updated 7 years ago
- Information Stealers Wall of Sheep (IS-WOS)☆12Updated 4 years ago
- USB HID driver emulation with PID/VID (0x3bca/0x27bb) of Plenom A/S Busylight Alpha, that is supported by Mimikatz. When mimikatz is exec…☆20Updated 2 years ago
- ☆25Updated 6 years ago
- A pyobfuscate fork made specifically to randomize and obfuscate python based payloads☆13Updated 10 years ago