zacbrown / flatkrabsetw
flatkrabsetw is a flat-C wrapper around the krabsetw C++ library. It's primarily meant for FFI usage in other languages.
☆11Updated 6 years ago
Alternatives and similar repositories for flatkrabsetw
Users that are interested in flatkrabsetw are comparing it to the libraries listed below
Sorting:
- ☆16Updated 7 years ago
- ☆52Updated 6 years ago
- A set of demos and a PowerShell module to interact with DotNetInterop.☆68Updated 7 years ago
- Protects and logs suspicious and malicious usage of .NET CSC.exe and Runtime C# Compilation☆25Updated 7 years ago
- Run Managed Assemblies with RunDll☆17Updated 6 years ago
- ☆26Updated 6 years ago
- Discover MSSQL Instances via UDP Scanning☆25Updated 6 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆31Updated 4 years ago
- All TMF files that I extracted from Microsoft PDBs.☆12Updated 5 years ago
- InsecurePowerShellHost is a .NET Core host process for InsecurePowerShell, a version of PowerShell Core v6.0.0 with key security features…☆31Updated 7 years ago
- PowerShellMethodAuditor listens to the PowerShell ETW provider and logs PowerShell method invocations.☆38Updated 7 years ago
- A simple reflective dll example☆19Updated 8 years ago
- Memory searching utilities☆42Updated 11 years ago
- Programmatically access a TLS certificate chain in C++ and C#☆13Updated 6 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 7 years ago
- Fileless SQL Server CLR-based Custom Stored Procedure Command Execution☆35Updated 8 years ago
- A PowerShell module to assist in parsing and managing catalog files.☆21Updated 8 years ago
- Basic demo for Hidden Treasure talk.☆49Updated 7 years ago
- Library for Windows XML Event Log (EVTX) data types☆18Updated 7 months ago
- Environmental (and http) keying for scripting languages☆39Updated 6 years ago
- Proof of concept communications from C# via a web browser process☆21Updated 6 years ago
- PoC for Bypassing UM Hooks By Bruteforcing Intel Syscalls☆38Updated 9 years ago
- ☆22Updated 7 years ago
- This script is used for extracting DDE in docx and xlsx☆12Updated 7 years ago
- Event metadata collected across all manifest-based ETW providers on Window 10 1903☆31Updated 5 years ago
- POC for IAT Parsing Payloads☆48Updated 8 years ago
- Tiny payload for transfer via LOKI - Provides high speed Virtual Channel two way file transfer capabilities☆27Updated 10 years ago
- Injection of MSIL using Cecil☆12Updated 9 years ago
- Summit Route End Point Protection - Client code☆17Updated 9 years ago
- Random stuff for FlareOn☆13Updated 6 years ago