Skip to content
View Swifto0's full-sized avatar
🌻
🌻

Block or report Swifto0

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

C++ 11,681 1,744 Updated Feb 12, 2025

A repository of sysmon configuration modules

PowerShell 2,719 598 Updated Aug 21, 2024

POC tool to convert CobaltStrike BOF files to raw shellcode

C 186 28 Updated Nov 5, 2021

Hunting queries and detections

757 92 Updated Jan 17, 2025

PowerShell rebuilt in C# for Red Teaming purposes

C# 976 139 Updated Nov 10, 2023

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

C++ 6,639 1,237 Updated Feb 8, 2025

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

C++ 124 17 Updated Aug 10, 2024

Shikata ga nai (仕方がない) encoder ported into go with several improvements

Go 1,604 221 Updated Feb 22, 2024

Collection of Offensive C# Tooling

C# 1,404 244 Updated Feb 6, 2023

一款host碰撞工具,做了较多的误报优化

Go 175 14 Updated Jun 15, 2024

An open-source windows defender manager. Now you can disable windows defender permanently.

C++ 1,547 126 Updated Sep 9, 2023

LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113

Python 477 112 Updated Jan 2, 2025

Execute dotnet app from unmanaged process

C++ 68 10 Updated Dec 29, 2024

Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".

C 649 94 Updated Jan 19, 2024

A DLL loader with advanced evasive features

C 697 91 Updated Feb 26, 2023

总结了20+.Net反序列化文章,持续更新

717 81 Updated Apr 3, 2024

WPTaskScheduler RPC Persistence & CVE-2024-49039 via Task Scheduler

C++ 118 23 Updated Nov 19, 2024

Interactive, dynamic, and realistic LLM honeypots

Python 31 7 Updated Jan 29, 2025

Enumerate and disable common sources of telemetry used by AV/EDR.

C++ 780 127 Updated Mar 11, 2021

Event Tracing For Windows (ETW) Resources

Python 361 70 Updated Oct 3, 2024

SQLite queries

PowerShell 77 11 Updated Mar 8, 2023

CWE-781: Improper Address Validation in IOCTL with METHOD_NEITHER I/O Control Code

C 333 63 Updated Jul 4, 2024

ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detection by VirtualMemAlloc Events (in-memory) etc.

C# 297 69 Updated Mar 20, 2024

A distributed task scheduling framework.(分布式任务调度平台XXL-JOB)

Java 28,267 11,071 Updated Feb 7, 2025

Retrieves exported functions from a legitimate DLL and generates a proxy DLL source code/template for DLL proxy loading or sideloading

C# 762 96 Updated Jul 21, 2020

一款用Go语言编写的数据库自动化提权工具,支持Mysql、MSSQL、Postgresql、Oracle、Redis数据库提权、命令执行、爆破以及ssh连接

Go 769 91 Updated Aug 30, 2023

Port of Cobalt Strike's Process Inject Kit

C++ 165 23 Updated Dec 1, 2024

Host CLR and run .NET binaries using Rust

Rust 82 6 Updated Jan 28, 2025

Java 内存马开聚会 🎉

Java 544 55 Updated Feb 2, 2025

Windows - Weaponizing privileged file writes with the Update Session Orchestrator service

C++ 384 99 Updated Jun 6, 2020
Next