Marcos Oviedo's repositories
presentations
This is a curated collection of resources and materials from various talks, presentations, and workshops that I have conducted
Alcatraz
x64 binary obfuscator
angryorchard-original
Original proof of concept I submitted to brokers demonstrating the vulnerability in hopes of getting rid of it.
BokuLoader
Cobalt Strike User-Defined Reflective Loader written in Assembly & C for advanced evasion capabilities. By: @0xBoku & @s4ntiago_p
C2-Tool-Collection
A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.
crypto_windows_asn1
Fork of Golang std crypto library
CustomKeyboardLayoutPersistence
Achieve execution using a custom keyboard layout
EVTX-ETW-Resources
Event Tracing For Windows (ETW) Resources
fleet
Open-source device management for IT and security teams with thousands of laptops and servers. (macOS, Windows, Linux, ChromeOS, AWS, Google Cloud, Azure, data center, containers)
ghidra_scripts
Scripts from Ghidra Golf competitions
go
The Go programming language
LeakedHandlesFinder
Leaked Windows processes handles identification tool
osquery
SQL powered operating system instrumentation, monitoring, and analytics.
Pentest-Windows
Windows internals and exploitation tricks
ping_osquery_extension
A small osquery extension to ping hosts through ICMP echo request/reply messages
RpcInvestigator
Temporary repo for fleshing out a tool to explore RPC interfaces on Windows
RPCMon
RPC Monitor tool based on Event Tracing for Windows
SandboxSecurityTools
Security testing tools for Windows sandboxing technologies
TangledWinExec
PoCs and tools for investigation of Windows process execution techniques