timwhitez / Etwti-UnhookPOC
Etwti-UnhookPOC just for test
☆11Updated 2 years ago
Alternatives and similar repositories for Etwti-UnhookPOC:
Users that are interested in Etwti-UnhookPOC are comparing it to the libraries listed below
- Ntdll Unhooking POC☆19Updated 2 years ago
- Cobalt Strike Beacon Object File (BOF) that uses CredUIPromptForWindowsCredentials API to invoke credential prompt☆18Updated 2 years ago
- Preventing 3rd Party DLLs from Injecting into your Malware☆25Updated 3 years ago
- Modified Version of Melkor @FuzzySecurity capable of creating disposable AppDomains in injected processes.☆27Updated 3 years ago
- Cobalt Strike Get clipboard plugin☆12Updated last year
- This project is created for research into antivirus evasion by unhooking.☆15Updated 3 years ago
- Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process☆43Updated last year
- A Cobalt Strike payload generator and lateral movement aggressor script which places Beacon shellcode into a custom shellcode loader☆20Updated 4 months ago
- Porting of NPPSPY by Grzegorz Tworek to 'man in the middle' the user logon process, and store the user's name and password in an unassumi…☆17Updated last year
- Cobalt Strike Beacon Object File to enable the webdav client service on x64 windows hosts☆17Updated last year
- Reflective DLL injection Execution☆19Updated 2 years ago
- A way to extract tickets in case I need to purge and restore tickets on the fly.☆17Updated 9 months ago
- Shellcode reflective DLL injection in Rust☆19Updated 11 months ago
- This is a simple project made to evade https://github.com/thefLink/Hunt-Sleeping-Beacons by using a busy wait instead of beacon's built i…☆32Updated 3 years ago
- An attempt to make a LoadLibrary designed for offensive operations, in C# obviously.☆54Updated 2 years ago
- ☆29Updated 2 years ago
- Windows RPC example calling stubs generated from MS-LSAT and MS-LSAD☆24Updated last year
- Cobalt Strike Malleable Profile Inline Patch Template: A Position Independent Code (PIC) Code Template For Creating Shellcode That Can Be…☆38Updated 4 years ago
- ☆19Updated 2 years ago
- A crappy hook on SpAcceptLsaModeContext that prints incoming auth attempts. WIP☆33Updated 3 years ago
- A simple BOF (Beacon Object File) to search files in the system☆12Updated last year
- This contains a number of examples demonstrating how to use callback functions in supported aggressor script functions☆30Updated 6 months ago
- Cobalt Strike UDRL for memory scanner evasion.☆44Updated last year
- Using LNK files and user input simulation to start processes under explorer.exe☆24Updated 4 months ago
- ☆22Updated 2 years ago
- old postex for grabbing a krbtgs for my current user☆29Updated last year
- x64 version☆30Updated 3 years ago
- This project is an EDRSandblast fork, adding some features and custom pieces of code.☆21Updated last year
- Use TpAllocWork, TpPostWork and TpReleaseWork to execute machine code☆22Updated last year
- One gate to all syscalls!☆23Updated 2 years ago