Tyler (dru1d-foofus)

dru1d-foofus

Geek Repo

Company:CDW

Location:Roanoke, VA

Home Page:https://blog.dru1d.ninja/

Twitter:@_dru1d

Github PK Tool:Github PK Tool

Tyler's repositories

GetLAPSPassword

A LAPS dumper written using the impacket library.

impacket-driverquery

A modified version of wmiquery.py used for remote driver enumeration via WMI

Language:PythonStargazers:4Issues:1Issues:0

NtCreateUserProcess

Minimal PoC developed as discuss in https://captmeelo.com/redteam/maldev/2022/05/10/ntcreateuserprocess.html

Language:CStargazers:2Issues:0Issues:0

XeroxDecrypter

A tool that leverages the Binary Ninja API to extract Xerox WorkCentre encryption keys from firmware images

Language:PythonLicense:BSD-3-ClauseStargazers:2Issues:0Issues:0

OffensiveCSharp

Collection of Offensive C# Tooling

Language:C#Stargazers:1Issues:0Issues:0

PRESENTATIONS

A collection of public talks/presentations I have given.

Stargazers:1Issues:0Issues:0

SHAPESHIFTER

Companion PoC for the "Adventures in Dynamic Evasion" blog post

Language:C#License:BSD-3-ClauseStargazers:1Issues:0Issues:0

DetectionLab

Automate the creation of a lab environment complete with security tooling and logging best practices

Language:HTMLLicense:MITStargazers:0Issues:0Issues:0
Language:PythonStargazers:0Issues:1Issues:0

ARRS-documentation

ARRS documentation

Stargazers:0Issues:0Issues:0
Language:JavaScriptStargazers:0Issues:0Issues:0

briscKernelDriver

Public disclosure of vulnerabilities identified in WindowsSCOPE kernel driver

Stargazers:0Issues:0Issues:0
License:CC0-1.0Stargazers:0Issues:0Issues:0

DriverParse

A tool that checks for commonly abused driver functions and whether or not they're in known driver blocklists.

Language:PythonStargazers:0Issues:1Issues:0
Stargazers:0Issues:0Issues:0

ExploitRemotingService

A tool to exploit .NET Remoting Services

Language:C#License:GPL-3.0Stargazers:0Issues:0Issues:0

impacket

Impacket is a collection of Python classes for working with network protocols.

Language:PythonLicense:NOASSERTIONStargazers:0Issues:0Issues:0

LOLDrivers

Living Off The Land Drivers

Language:YARALicense:Apache-2.0Stargazers:0Issues:0Issues:0

MemProcFS

MemProcFS

Language:CLicense:AGPL-3.0Stargazers:0Issues:0Issues:0

metasploit-framework

Metasploit Framework

Language:RubyLicense:NOASSERTIONStargazers:0Issues:0Issues:0

MiniDumpFS

Parse minidump files from system memory dumps using Ulf Frisk's vmm library

Language:CLicense:AGPL-3.0Stargazers:0Issues:1Issues:0

MsgKit

A .NET library to make MSG files without the need for Outlook - just testing some stuff

Language:C#Stargazers:0Issues:0Issues:0

nutanix_terraform

A test repo for Nutanix+Terraform configuration

Language:HCLStargazers:0Issues:0Issues:0

rainbowcrackalack

Rainbow table generation & lookup tools.

Language:CLicense:GPL-3.0Stargazers:0Issues:0Issues:0

RoanokeChallengeWriteUp

a write-up for a random Roanoke-based CTF

Stargazers:0Issues:0Issues:0

SharpHound3

C# Data Collector for the BloodHound Project, Version 3

Language:C#License:GPL-3.0Stargazers:0Issues:0Issues:0

Shellcode-Downloader-CreateThread-Execution

This POC gives you the possibility to compile a .exe to completely avoid statically detection by AV/EPP/EDR of your C2-shellcode and download and execute your C2-shellcode which is hosted on your (C2)-webserver.

Language:C++Stargazers:0Issues:0Issues:0

SysWhispers

AV/EDR evasion via direct system calls.

Language:AssemblyLicense:Apache-2.0Stargazers:0Issues:0Issues:0

VmmFrost

MemProcFS/Vmmsharp Wrapper for .NET6 with useful abstractions.

Language:C#License:AGPL-3.0Stargazers:0Issues:0Issues:0

WireGuardHelper

A collection of WireGuard VPN helper scripts.

Language:PythonStargazers:0Issues:1Issues:0