Dmytro Oleksiuk's starred repositories

EDR-Telemetry

This project aims to compare and evaluate the telemetry of various EDR products.

Language:PythonStargazers:1457Issues:0Issues:0

unKover

PoC Anti-Rootkit to uncover Windows Drivers/Rootkits mapped to Kernel Memory.

Language:C++Stargazers:134Issues:0Issues:0

bootfuzz

A MBR Fuzzer

Language:AssemblyLicense:MITStargazers:27Issues:0Issues:0

lkrg

Linux Kernel Runtime Guard

Language:CLicense:NOASSERTIONStargazers:406Issues:0Issues:0
Language:ShellStargazers:2945Issues:0Issues:0
Language:PythonStargazers:6Issues:0Issues:0

ioctlance

A tool that is used to hunt vulnerabilities in x64 WDM drivers

Language:PythonLicense:GPL-3.0Stargazers:158Issues:0Issues:0
Language:CStargazers:117Issues:0Issues:0

Automated-MUlti-UAC-Bypass

Automated Multi UAC BYPASS for win10|win11|win12-pre-release|ws2019|ws2022

Language:PowerShellStargazers:392Issues:0Issues:0

CVE-2024-20698

Analysis of the vulnerability

Language:C++Stargazers:46Issues:0Issues:0
Language:C++License:Apache-2.0Stargazers:127Issues:0Issues:0

Misc-Research

A collection of tools, scripts and personal research

Language:PythonStargazers:102Issues:0Issues:0

win_shellcode_builder

Building Windows Shellcode in Linux

Language:DockerfileLicense:MITStargazers:10Issues:0Issues:0

kasld

Kernel Address Space Layout Derandomization (KASLD) - A collection of various techniques to infer the Linux kernel base virtual address as an unprivileged local user, for the purpose of bypassing Kernel Address Space Layout Randomization (KASLR).

Language:CLicense:MITStargazers:407Issues:0Issues:0
Language:C++Stargazers:171Issues:0Issues:0

Artillery

CIA UAC bypass implementation that utilizes elevated COM object to write to System32 and an auto-elevated process to execute as administrator.

Language:CStargazers:171Issues:0Issues:0

MITMonster

A monster cheatsheet on MITM attacks

License:Apache-2.0Stargazers:286Issues:0Issues:0
Language:C++License:MITStargazers:1Issues:0Issues:0

PyKD

PyKD DLLs for x86 and x64 platforms

Stargazers:14Issues:0Issues:0

Periscope

Fully Integrated Adversarial Operations Toolkit (C2, stagers, agents, ephemeral infrastructure, phishing engine, and automation)

Language:C#License:NOASSERTIONStargazers:380Issues:0Issues:0
Language:CStargazers:84Issues:0Issues:0

ndisapi

Windows Packet Filter library for network packet interception and manipulation, suitable for custom firewall, VPN and traffic analysis applications.

Language:C++License:MITStargazers:275Issues:0Issues:0
Language:ShellStargazers:319Issues:0Issues:0

linux_kernel_hacking

Linux Kernel Hacking

Language:CLicense:GPL-2.0Stargazers:600Issues:0Issues:0

PAExec

Remote execution, like PsExec

Language:C++Stargazers:523Issues:0Issues:0

ThunderScope

ThunderScope GitHub Repo

Language:VHDLLicense:MITStargazers:674Issues:0Issues:0

TaskSchedulerMisc

Misc TaskScheduler Plays

Language:C#License:GPL-3.0Stargazers:220Issues:0Issues:0
Language:C++Stargazers:176Issues:0Issues:0

BypassCredGuard

Credential Guard Bypass Via Patching Wdigest Memory

Language:C++Stargazers:301Issues:0Issues:0

CVE-2022-21894

baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability

Language:CLicense:UnlicenseStargazers:283Issues:0Issues:0