WinMan - An Offline WIN/NT API Documentation
☆30Jul 8, 2026Updated 3 weeks ago
Alternatives and similar repositories for winman
Users that are interested in winman are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆58Jul 12, 2026Updated 3 weeks ago
- ☆68Jul 14, 2026Updated 2 weeks ago
- ☆44Jul 1, 2026Updated last month
- An aggressor script that tracks operational changes made during a red team engagement. Gives you a full audit trail of what was changed a…☆27May 21, 2026Updated 2 months ago
- wtftp.py is a tool to attack Microsoft Deployment Toolkit (MDT) and Windows Deployment Services (WDS).☆35Jan 22, 2026Updated 6 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Experimentations with the MSBuild Capabilites in a default environment.☆23Dec 6, 2025Updated 7 months ago
- Stealthy .NET assembly loading using AssemblyNative::LoadFromBuffer☆58Mar 22, 2026Updated 4 months ago
- A Proof of Concept demonstrating CET-compliant callstack spoofing in Rust. It leverages Windows Thread Pool and Enum Callback trampolinin…☆49Jul 12, 2026Updated 3 weeks ago
- Encode shellcode as XML-looking data. Single-header C library with a two-stage PIC loader example.☆15Feb 11, 2026Updated 5 months ago
- Precision call-stack spoofing gadget hunter for x64 DLLs, powered by Iced disassembler☆19Jul 2, 2026Updated last month
- Windows native ETW inspection suite for browsing providers, reading metadata, consuming live events, recording ETL traces, filtering resu…☆94Jul 27, 2026Updated last week
- Request device ticket/token using the device's MSA☆37Aug 25, 2025Updated 11 months ago
- Bloodhound python Ingestor using ADWS☆51Jun 4, 2026Updated last month
- Modules designed to be used with the Conquest framework.☆22Updated this week
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- DynLoader A modular Windows loader focused on EDR evasion Built with indirect syscall (Tartarus Gate / Hell’s Gate), Manual PE parsing …☆81Jul 10, 2026Updated 3 weeks ago
- Transform LDAP filters, BaseDNs, attribute lists, and attribute entries using composable middleware chains. Zero dependencies. Works as a…☆44Apr 13, 2026Updated 3 months ago
- A Crystal Palace shared library to resolve & perform syscalls☆62Oct 29, 2025Updated 9 months ago
- ☆26Dec 31, 2025Updated 7 months ago
- An OpenGraph extension for secrets☆21Updated this week
- ☆23May 19, 2026Updated 2 months ago
- CPL remote trigger☆44Dec 28, 2025Updated 7 months ago
- BOF to terminate a process via PID as argument☆28Sep 7, 2025Updated 10 months ago
- NimSkrull is an adaption from the original Skrull malware anti-copy DRM. Only for the anti-copy feature. (https://github.com/aaaddress1/S…☆13May 20, 2023Updated 3 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- User-mode ETW interception and telemetry manipulation lab for Windows security research.☆43Jun 15, 2026Updated last month
- ☆18Dec 11, 2025Updated 7 months ago
- Cobalt Strike Aggressor Script for identifying security products on Windows hosts — six enumeration methods rated by noise level, from si…☆92Feb 6, 2026Updated 5 months ago
- Red Team Assessment Platform - reporting, visualizations, and analytics for cybersecurity red teams☆34Apr 13, 2026Updated 3 months ago
- A tool to automate MS Direct Send emails☆21Mar 16, 2026Updated 4 months ago
- sigreturn-oriented(SROP) based sleep obfuscation poc for Linux☆69Dec 15, 2025Updated 7 months ago
- One PsExec client to rule them all☆15Mar 25, 2026Updated 4 months ago
- Modern Win32 API monitor for Windows security, reverse engineering, debugging, and anti-cheat research.☆45Jun 28, 2026Updated last month
- Brute Ratel External C2 (Microsoft Teams)☆38Dec 11, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A header-only, freestanding C++20 template for IR-bytecode VM loaders☆27May 10, 2026Updated 2 months ago
- SACL Scanner is a tool designed to scan and analyze SACLs.☆52Feb 13, 2025Updated last year
- Crystal Palace library for proxying Nt API calls via the Threadpool☆106Oct 18, 2025Updated 9 months ago
- Smuggling C2 comms through links previews☆18Jun 17, 2026Updated last month
- A simple tool to identify WDS servers in Active Directory☆32Aug 25, 2025Updated 11 months ago
- ☆97Updated this week
- Windows kernel research tool. Looks like a debugger, but it is not a debugger. It uses a kernel driver to provide a WinDbg-like live kern…☆71Updated this week