trustedsec / TCS_InjectionTechniquesLinks
☆16Updated 2 years ago
Alternatives and similar repositories for TCS_InjectionTechniques
Users that are interested in TCS_InjectionTechniques are comparing it to the libraries listed below
Sorting:
- DLL Hijacking and Mock directories technique to bypass Windows UAC security feature and getting high-level privileged reverse shell. Secu…☆44Updated last year
- This project is an EDRSandblast fork, adding some features and custom pieces of code.☆25Updated 2 years ago
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated 2 years ago
- Stealthy Loader-cum-dropper/stage-1/stager targeting Windows10☆37Updated 3 years ago
- ☆47Updated 2 years ago
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- maldev obviously☆28Updated 9 months ago
- This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hol…☆71Updated last year
- ☆61Updated 2 years ago
- Simple PoC to locate hooked functions by EDR in ntdll.dll☆46Updated 2 years ago
- A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.☆40Updated 3 years ago
- Halos Gate-based NTAPI Unhooker☆52Updated 3 years ago
- A care package of useful bofs for red team engagments☆55Updated last year
- Creation and removal of Defender path exclusions and exceptions in C#.☆33Updated 2 years ago
- Sleep Obfuscation☆45Updated 3 years ago
- Another AMSI bypass - but in C++.☆24Updated 2 years ago
- Firefox webInjector capable of injecting codes into webpages using a mitmproxy.☆42Updated 3 years ago
- Repository to gather the .NET malware I will be developing☆18Updated 10 months ago
- Unhook Ntdll.dll, Go & C++.☆32Updated 9 months ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆102Updated 2 years ago
- An Aggressor Script that utilizes NtCreateUserProcess to run binaries☆30Updated last year
- 「⚙️」Detect which native Windows API's (NtAPI) are being hooked☆39Updated last year
- Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by …☆24Updated 2 years ago
- abusing Process Hacker driver to terminate other processes (BYOVD)☆83Updated 2 years ago
- Cobalt Strike Beacon Object File to enable the webdav client service on x64 windows hosts☆23Updated 2 years ago
- BadExclusions is a tool to identify folder custom or undocumented exclusions on AV/EDR☆20Updated 2 years ago
- Your NTDLL vaccine from modern direct syscall methods.☆36Updated 3 years ago
- Golang Implementation of Hell's gate☆21Updated 2 years ago
- My implementation of Halo's Gate technique in C#☆54Updated 3 years ago
- Red Team Operation's Defense Evasion Technique.☆56Updated last year