k4nfr3

k4nfr3

Geek Repo

Location:blue planet

Twitter:@k4nfr3

Github PK Tool:Github PK Tool

k4nfr3's repositories

Dumpert

LSASS memory dumper using direct system calls and API unhooking.

Language:CStargazers:20Issues:1Issues:0

XDR_scripts

A few XDR Scripts

Language:PythonLicense:BSD-3-ClauseStargazers:16Issues:3Issues:0

panos-scanner

Determine the Palo Alto PAN-OS software version of a remote GlobalProtect portal or management interface.

Language:PythonLicense:MITStargazers:13Issues:0Issues:0

ritadnspysolver

Real Intelligence Threat Analytics - Python addon scripts

Language:PythonLicense:GPL-3.0Stargazers:7Issues:1Issues:0

nmap-scripts

repository containing some nmap scripts

Language:LuaLicense:GPL-3.0Stargazers:6Issues:1Issues:0

Probatorum-EDR-Userland-Hook-Checker

Project to check which Nt/Zw functions your local EDR is hooking

Language:C++License:BSD-3-ClauseStargazers:5Issues:0Issues:0
Language:BatchfileLicense:GPL-3.0Stargazers:3Issues:1Issues:0

Backstab

A tool to kill antimalware protected processes

Language:CStargazers:1Issues:0Issues:0

ioctl_tools

some tools for driver research

C2-JARM

A list of JARM hashes for different ssl implementations used by some C2/red team tools.

Stargazers:0Issues:0Issues:0
Language:PythonLicense:GPL-3.0Stargazers:0Issues:1Issues:0

CheekyBlinder

Enumerating and removing kernel callbacks using signed vulnerable drivers

Language:C++Stargazers:0Issues:0Issues:0

DefenderCheck

Identifies the bytes that Microsoft Defender flags on.

Language:C#Stargazers:0Issues:0Issues:0

HijackLibs

Project for tracking publicly disclosed DLL Hijacking opportunities.

License:GPL-3.0Stargazers:0Issues:0Issues:0

HowTo

Lots of script for everything and nothing

Language:PowerShellLicense:GPL-2.0Stargazers:0Issues:0Issues:0

Inveigh

.NET IPv4/IPv6 machine-in-the-middle tool for penetration testers

Language:PowerShellLicense:BSD-3-ClauseStargazers:0Issues:0Issues:0

Invoke-EDRChecker

Checks running processes, process metadata, Dlls loaded into your current process and the each DLLs metadata, common install directories, installed services, the registry and running drivers for the presence of known defensive products such as AV's, EDR's and logging tools.

Language:PowerShellLicense:BSD-3-ClauseStargazers:0Issues:0Issues:0
Stargazers:0Issues:1Issues:0

ntfsdump

Extract files from NTFS Volume

Language:C++Stargazers:0Issues:0Issues:0

plane-notify

Notify if a selected plane has taken off or landed using ADS-B data. Compares older data to newer data to determine if a landing or takeoff has occurred. As well as nav modes, emergency squawk and resolution advisory notifications. Can output to Twitter, Discord, Mastodon, and Telegram

Language:PythonLicense:GPL-3.0Stargazers:0Issues:0Issues:0

TelemetrySourcerer

Enumerate and disable common sources of telemetry used by AV/EDR.

Language:C++License:Apache-2.0Stargazers:0Issues:0Issues:0

WebclientServiceScanner

Python tool to Check running WebClient services on multiple targets based on @leechristensen

Language:PythonLicense:MITStargazers:0Issues:0Issues:0
Stargazers:0Issues:1Issues:0