Lists (1)
Sort Name ascending (A-Z)
Starred repositories
gmh5225 / NMI-nmi_callback
Forked from cryotb/nmi_callbackDemonstration of triggering non-maskable interrupts using nt&hal API on windows.
lgandx / Responder
Forked from SpiderLabs/ResponderResponder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…
Awesome EDR Bypass Resources For Ethical Hacking
VirtualAlllocEx / UnlinkDLL
Forked from frkngksl/UnlinkDLLDLL Unlinking from InLoadOrderModuleList, InMemoryOrderModuleList, InInitializationOrderModuleList, and LdrpHashTable
Tylous / ScareCrow
Forked from optiv/ScareCrowScareCrow - Payload creation framework designed around EDR bypass.
khast3x / marble-framework
Forked from anony000/marble-frameworkmarble framework usado pela CIA para mascarar fontes de malwares
List of Awesome Red Team / Red Teaming Resources This list is for anyone wishing to learn about Red Teaming but do not have a starting point.
A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and remote processes.
Organized bookmarks to Win32API posts of Raymond Chen's blog "The Old New Thing".
llkbkh / ThreadStackSpoofer
Forked from mgeeky/ThreadStackSpooferThread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's memory allocation from scanners and analysts.
aaaddress1 / CreateProcess
Forked from fortra/CreateProcessA small PoC that creates processes in Windows
translate project of Drops
a7t0fwa7 / HypercallPageHook
Forked from xu-Wan/HypercallPageHookPOC Hook of nt!HvcallCodeVa
xoreaxeaxeax / movfuscator
Forked from Battelle/movfuscatorThe single instruction C compiler
The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin
loneicewolf / smbdoor
Forked from ExpLife0011/smbdoorimproving zerosums smbdoor - a silent remote backdoor which abuses undoc. APIs in srvnet.sys
loneicewolf / KernelMode-Code
Forked from i-nino/KernelMode-Code2022 Updated Kernelmode-Code
xoreaxeaxeax / REpsych
Forked from Battelle/REpsychPsychological warfare in reverse engineering
eversinc33 / CheeseOunce
Forked from evilashz/CheeseOunceCoerce Windows machines auth via MS-EVEN
pkb1s / SharpClipHistory
Forked from FSecureLABS/SharpClipHistorySharpClipHistory is a .NET application written in C# that can be used to read the contents of a user's clipboard history in Windows 10 starting from the 1809 Build.
mkaring / ConfuserEx
Forked from yck1509/ConfuserExAn open-source, free protector for .NET applications
klezVirus / obfuscator
Forked from heroims/obfuscatorollvm, based on llvm-clang 5.0.2, 6.0.1, 7.0.1, 8.0, 9.0, 9.0.1
klezVirus / AsStrongAsFuck
Forked from decay88/AsStrongAsFuckA console obfuscator for .NET assemblies.
Barracudach / Handle-Hijacking-Anti-Cheat-Bypass
Forked from Apxaey/Handle-Hijacking-Anti-Cheat-BypassThis is a Anti-Cheat bypass written in c++ by Apxaey, and makes use of Microsoft's undocumented Native API. I tested this specifically on VAC, however it should bypass any other usermode anticheats…
内核级别隐藏指定窗口
m0n0ph1 / Crypters
Forked from iGh0st/CryptersVarious Crypter Project
UAC bypass for x64 Windows 7 - 11(无弹窗版)
Simple and sane cryptographic wrapper library.
topotam / Elevator
Forked from Kudaes/ElevatorUAC Bypass by abusing RPC and debug objects.