James Forshaw's repositories

DotNetToJScript

A tool to create a JScript file which loads a .NET v2 assembly from memory.

Language:C#License:GPL-3.0Stargazers:1214Issues:48Issues:13

oleviewdotnet

A .net OLE/COM viewer and inspector to merge functionality of OleView and Test Container

Language:C#License:GPL-3.0Stargazers:1084Issues:53Issues:32

ExploitRemotingService

A tool to exploit .NET Remoting Services

Language:C#License:GPL-3.0Stargazers:466Issues:25Issues:5

WindowsRpcClients

This respository is a collection of C# class libraries which implement RPC clients for various versions of the Windows Operating System from 7 to Windows 10.

Language:C#License:UnlicenseStargazers:268Issues:11Issues:0

blackhat-usa-2022-demos

Demos for the Blackhat USA 2022 talk "Taking Kerberos to the Next Level"

Language:PowerShellLicense:GPL-3.0Stargazers:257Issues:7Issues:0

CANAPE.Core

A network proxy library written in C# for .NET Core based on CANAPE

Language:C#License:GPL-3.0Stargazers:177Issues:16Issues:4

infosec-presentations

A repository of previous info-sec presentations I've presented.

IE11SandboxEscapes

Some example source code for fixed IE11 sandbox escapes.

Language:Objective-CLicense:GPL-3.0Stargazers:139Issues:27Issues:1

DeviceGuardBypasses

A repository of some of my Windows 10 Device Guard Bypasses

Language:C#License:GPL-3.0Stargazers:134Issues:12Issues:0

windows-security-internals

A repository for additional files related to the book Windows Security Internals with PowerShell from No Starch Press.

Language:PowerShellLicense:Apache-2.0Stargazers:110Issues:3Issues:0

ExploitDotNetDCOM

A tool to exploit .NET DCOM for EoP and RCE. Is fixed in latest versions of the .NET.

Language:C++License:GPL-3.0Stargazers:85Issues:11Issues:0

WindowsRuntimeSecurityDemos

Demos for Presentation on Windows Runtime Security

Language:C#License:GPL-3.0Stargazers:72Issues:4Issues:0

DotNetInteropDemos

A set of demos and a PowerShell module to interact with DotNetInterop.

Language:PowerShellLicense:GPL-3.0Stargazers:67Issues:5Issues:1

windows-attacksurface-workshop

Workshop material for a Windows Attack Surface Analysis Workshop

ZeroNights2017

Some sample code from my Zero Nights 2017 presentation.

Language:C++License:GPL-3.0Stargazers:62Issues:8Issues:0

ExampleChatApplication

A simple example chat application written for .NET Core to learn network protocol analysis.

Language:C#License:GPL-3.0Stargazers:40Issues:6Issues:3

Zer0Con_2018

Repository for my talk on Desktop Bridge at Zer0Con 2018.

Language:PowerShellLicense:GPL-3.0Stargazers:33Issues:5Issues:0

DumpReparsePoints

This is a simple tool to dump all the reparse points on an NTFS volume.

Language:C#License:GPL-3.0Stargazers:32Issues:4Issues:0

canape

CANAPE Network Testing Tool

Language:PythonLicense:GPL-3.0Stargazers:31Issues:6Issues:0

setsidmapping

Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.

Language:C#License:GPL-3.0Stargazers:23Issues:3Issues:0

44con_2014

Materials for 44con 2014 CANAPE Workshop

Language:PythonStargazers:22Issues:4Issues:0

AxHell

A simple exploitable ActiveX control for RE/VR

Language:C++License:GPL-3.0Stargazers:18Issues:6Issues:0

bh2014

Built binaries for BH 2014 workshop

Language:PythonLicense:GPL-3.0Stargazers:18Issues:7Issues:0

SuperFunkyChat

An example binary protocol application for learning CANAPE

Language:C#License:GPL-3.0Stargazers:18Issues:4Issues:1

canape-ssl-mitm-osx

A simple CANAPE extension to exploit iOS/OSX SSL vulnerability

Language:C#License:AGPL-3.0Stargazers:10Issues:5Issues:0

pdbex

pdbex is a utility for reconstructing structures and unions from the PDB into compilable C headers

Language:C++License:MITStargazers:8Issues:4Issues:0

re

Some simple reverse engineering resources

Language:PythonStargazers:5Issues:4Issues:0

windbg_js_scripts

Toy scripts for playing with WinDbg JS API

Language:JavaScriptLicense:MITStargazers:2Issues:3Issues:0

apple1_emu

A simple Apple I emulator written in Rust.

Language:RustLicense:GPL-3.0Stargazers:1Issues:0Issues:0