zmkeh

zmkeh

Geek Repo

0

followers

0

following

0

stars

Location:London, UK

Github PK Tool:Github PK Tool

zmkeh's repositories

Akame-Loader

Akame is an open-source, UD shellcode loader written in C++17.

Language:C++License:MITStargazers:0Issues:0Issues:0

APTRS-

Automated Penetration Testing Reporting System 自动化渗透测试报告

Language:PythonLicense:GPL-3.0Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

ClangTest

llvm driver+exe clang

Language:C++Stargazers:0Issues:0Issues:0

Collect-MemoryDump

Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR

License:GPL-3.0Stargazers:0Issues:0Issues:0
Language:PythonStargazers:0Issues:0Issues:0

CVE-2022-39197

CobaltStrike <= 4.7.1 RCE

Language:PythonStargazers:0Issues:0Issues:0

DCMB

Dont Call Me Back - Dynamic kernel callback resolver.

Language:CStargazers:0Issues:0Issues:0

DeleteShadowCopies

Deleting Shadow Copies In Pure C++

License:MITStargazers:0Issues:0Issues:0

DLLirant

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary. dll自动化劫持

Language:C#License:MITStargazers:0Issues:0Issues:0

DragonCastle

A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.

Language:C++Stargazers:0Issues:0Issues:0

EC

open-source cheat / penetration test for anti-cheats

Language:C++Stargazers:0Issues:0Issues:0

ErebusGate

ErebusGate for Nim Bypass AV/EDR

Language:NimStargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

KeeFarceReborn

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

License:BSD-3-ClauseStargazers:0Issues:0Issues:0

Kernel-Cactus

It's pointy and it hurts!

License:GPL-3.0Stargazers:0Issues:0Issues:0

KittyStager

KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to be able to have a web server and some kitten and be able to use the with any shellcode.

Language:GoLicense:MITStargazers:0Issues:0Issues:0

malware-souk

Collaborative malware exchange repository.

License:Apache-2.0Stargazers:0Issues:0Issues:0

ovpn-dco-win

OpenVPN Data Channel Offload driver for Windows

Language:C++License:MITStargazers:0Issues:0Issues:0

PatchThatAMSI

this repo contains 6 AMSI patches , both force the triggering of a conditional jump inside AmsiOpenSession() that close the Amsi scanning session. The 1st patch by corrupting the Amsi context header and the 2nd patch by changing the string "AMSI" that will be compared to the Amsi context header to "D1RK". The other just set ZF to 1.

Stargazers:0Issues:0Issues:0

RePulsar

SMB-backdoor implementation

License:MITStargazers:0Issues:0Issues:0

RwxMeme

State of the art DLL injector that took 20 minutes to make

Language:C++License:MITStargazers:0Issues:0Issues:0

ScreenshotBOF

An alternative screenshot capability for Cobalt Strike that uses WinAPI and does not perform a fork & run. Screenshot saved to disk as a file.

Stargazers:0Issues:0Issues:0

siphon

:alembic: Intercept stdin/stdout/stderr for any process ;linux拦截进程输入输出

Language:GoLicense:UnlicenseStargazers:0Issues:0Issues:0

Spartacus

Spartacus DLL Hijacking Discovery Tool dll自动化劫持

Language:C#License:MITStargazers:0Issues:0Issues:0

SSN_Resolver

dynamically resolving System Service Number (syscall number) by offsets from the PEB with API hashing

Language:C++Stargazers:0Issues:0Issues:0

stager_libpeconv

A basic meterpreter protocol stager using the libpeconv library by hasherezade for reflective loading

Stargazers:0Issues:0Issues:0

StopDefender

Stop Windows Defender programmatically

Language:C++License:MITStargazers:0Issues:0Issues:0
License:GPL-3.0Stargazers:0Issues:0Issues:0

windowskernelprogrammingbook

The Windows Kernel Programming book samples

Language:C++License:MITStargazers:0Issues:0Issues:0