-
donut Public
Forked from TheWover/donutGenerates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
C BSD 3-Clause "New" or "Revised" License UpdatedAug 4, 2021 -
malware_training_vol1 Public
Forked from hasherezade/malware_training_vol1Materials for Windows Malware Analysis training (volume 1)
Assembly UpdatedMar 24, 2021 -
PCIBan Public
Forked from KDIo3/PCIBanA PoC for requesting HWIDs directly from hardware, skipping any potential hooks or OS support.
C MIT License UpdatedMar 16, 2021 -
EC_PRO-LAN Public
Forked from ekknod/AmdRyzenMasterCheatEarly 2019 - late 2020. R.I.P. CVE-2020-12928 https://h0mbre.github.io/RyzenMaster_CVE/#
C++ UpdatedFeb 14, 2021 -
-
Windows-classic-samples Public
Forked from microsoft/Windows-classic-samplesThis repo contains samples that demonstrate the API used in Windows classic desktop applications.
Other UpdatedJan 19, 2021 -
Shell_Protect Public
Forked from TimelifeCzy/Shell_ProtectVM一键加壳/脱壳,全压缩,反调试等
C++ UpdatedJan 14, 2021 -
ByteDance-HIDS Public
Forked from bytedance/ElkeidByteDance-HIDS is a Cloud-Native Host-Based Intrusion Detection solution project to provide next-generation Threat Detection and Behavior Audition with modern architecture.
C UpdatedDec 30, 2020 -
masqueradeCmdline Public
Forked from aaaddress1/masqueradeCmdlineA PoC to demo modifying cmdline of the child process dynamically. It might be useful against process log tracing, AV or EDR.
C++ UpdatedDec 23, 2020 -
Fully-Undetectable-Techniques Public
Forked from gnxbr/Fully-Undetectable-TechniquesC GNU General Public License v3.0 UpdatedDec 18, 2020 -
-
solorigate_sample_source Public
Forked from Shadow0ps/solorigate_sample_sourceDecompile of the Solorwinds "SUNBURST" Trojan associated with Campaign UNC2452 This is the SolarWinds.Orion.Core.BusinessLayer.dll file from the v2019.4.5220-Hotfix5.msp Patch
C# UpdatedDec 14, 2020 -
-
ListRDPConnections Public
Forked from Heart-Sky/ListRDPConnectionsC# 读取本机对外RDP连接记录和其他主机对该主机的连接记录,从而在内网渗透中获取更多可通内网网段信息以及定位运维管理人员主机
C# UpdatedDec 7, 2020 -
-
execute-shellcode-pgext Public
Forked from ASkyeye/execute-shellcode-pgextPostgres Extension to Execute Shellcodes
C UpdatedNov 27, 2020 -
-
MemScanner Public
Forked from FaEryICE/MemScannerAnalyze Windows x64 Kernel Memory Layout
C UpdatedNov 19, 2020 -
Win_Rootkit Public
Forked from alal4465/Win_RootkitA kernel-mode rootkit with remote control
C++ UpdatedNov 13, 2020 -
1earn Public
Forked from ffffffff0x/1earn个人维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
C++ UpdatedNov 3, 2020 -
CVE-2020-16938 Public
Forked from ioncodes/CVE-2020-16938Bypassing NTFS permissions to read any files as unprivileged user.
C++ UpdatedOct 21, 2020 -
CVE-2020-16947 Public
Forked from 0neb1n/CVE-2020-16947PoC of CVE-2020-16947 (Microsoft Outlook RCE vulnerablility)
UpdatedOct 15, 2020 -
NtCompareSigningLevel-hook Public
Forked from ExpLife0011/NtCompareSigningLevel-hookswap the function pointer in NtCompareSigningLevels for undetected driver communication.
C++ UpdatedOct 14, 2020 -
Kernelhub Public
Forked from Ascotbe/KernelhubWindows 提权漏洞合集,附带编译环境,演示GIF图,漏洞详细信息,可执行文件
C GNU Affero General Public License v3.0 UpdatedOct 6, 2020 -
-
Il2CppDumper Public
Forked from Perfare/Il2CppDumperUnity il2cpp reverse engineer
C# MIT License UpdatedSep 29, 2020 -
EkoParty_Advanced_Fuzzing_Workshop Public
Forked from antonio-morales/EkoParty_Advanced_Fuzzing_WorkshopRich Text Format UpdatedSep 28, 2020 -
-
CVE-2020-0787-EXP-ALL-WINDOWS-VERSION Public
Forked from cbwang505/CVE-2020-0787-EXP-ALL-WINDOWS-VERSIONSupport ALL Windows Version
C++ Other UpdatedSep 11, 2020 -