tdubs / credential-provider
Custom Credential Provider to Log credentials on Windows 7 and higher
☆16Updated 7 years ago
Alternatives and similar repositories for credential-provider
Users that are interested in credential-provider are comparing it to the libraries listed below
Sorting:
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆23Updated 4 years ago
- ☆17Updated 5 years ago
- ETWNetMonv3 is simple C# code for Monitoring TCP Network Connection via ETW & ETWProcessMon/2 is for Monitoring Process/Thread/Memory/Ima…☆39Updated last year
- This is a simple tool to dump all the reparse points on an NTFS volume.☆33Updated 4 years ago
- ☆41Updated 5 years ago
- ☆33Updated 10 years ago
- Code for blog written at 0xdarkvortex.dev Red Team TTPs Part 2☆18Updated 4 years ago
- A tool to create COM class/interface relationships in neo4j☆50Updated 2 years ago
- Windows x64 Process Scanner to detect application compatability shims☆37Updated 6 years ago
- Executes shellcode from a remote server and aims to evade in-memory scanners☆31Updated 5 years ago
- ☆17Updated 4 years ago
- An IDA plugin to deal with Event Tracing for Windows (ETW)☆55Updated 2 years ago
- Files for http://deniable.org/windows/windows-callbacks☆25Updated 4 years ago
- GUI Application in C# to run and disassemble shellcode☆35Updated 7 years ago
- Research into COM☆19Updated 5 years ago
- ☆54Updated 6 years ago
- Bypass UAC by abusing the Windows Defender Firewall Control Panel, environment variables, and shell protocol handlers☆18Updated 3 years ago
- A tool for scanning registery key permissions. Find where non-admins can create symbolic links.☆46Updated 5 years ago
- ☆20Updated 5 years ago
- Experiments on the Windows Internals☆30Updated 5 years ago
- Tools for analyzing Windows containers and break container's isolation☆31Updated 2 years ago
- ☆21Updated 3 years ago
- Library for Windows XML Event Log (EVTX) data types☆18Updated 7 months ago
- Windows Shellcode Testing Utility to Run Shellcode From A File☆12Updated 5 years ago
- Exploiting ring0 memcpy-like functionality to disable Driver Signing Enforcement (DSE)☆20Updated 5 years ago
- InsecurePowerShellHost is a .NET Core host process for InsecurePowerShell, a version of PowerShell Core v6.0.0 with key security features…☆31Updated 7 years ago
- ☆26Updated 4 years ago
- RPC Monitor based on The ETW Microsoft-Windows-Rpc provider☆24Updated 5 years ago
- Persistent through COM Hijacking☆20Updated 6 years ago
- Source files for my posts☆16Updated last year