bhassani's repositories
EternalBlueC
EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar Shellcode & DLL uploader
DoublepulsarUploader
Repository for DoublePulsar DLL/Shellcode uploader programs
CVE-2021-33739_PoC
CVE-2021-33739 PoC Analysis
DoublePulsarJava
Doublepulsar interface application written in Java
MalwareSnippetResearch
Collection of malware snippets for research purposes
WannaCry-Experiment
该资源主要复现了WannCry勒索病毒过程,包括对应的资源、文章和勒索病毒。希望对您有所帮助~
atomic-red-team
Small and highly portable detection tests based on MITRE's ATT&CK.
ChatGPTsnippets
snippets from ChatGPT in C++
DetectCobaltStrike
Monitoring app for detecting cobalt strike
DumpThatLSASS
Dumping LSASS by Unhooking MiniDumpWriteDump by getting a fresh DbgHelp.dll copy from the disk , plus functions and strings obfuscation , it contains Anti-sandbox , if you run it under unperformant Virtual Machine you need to uncomment the code related to it and recompile.
Freeze
Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods
Havoc
The Havoc Framework
msldap
LDAP library for auditing MS AD
NodeJSInput
Respository for basic nodeJS project
ProcessHollow
Collection of process hollowing in different languages
PyCobaltBot
Python based Slack/Discord/Telegram bot
PyWin32Scripts
python scripts that implement certain techniques usually found in C
ReflectiveNtdll
A Dropper POC focusing EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (using pe2shc by @hasherezade). Payload encryption via SystemFucntion033 NtApi and No new thread via Fiber
tiny-AES-c
Small portable AES128/192/256 in C