A Dropper POC focusing EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (using pe2shc by @hasherezade). Payload encryption via SystemFucntion033 NtApi and No new thread via Fiber
Repository
Repository di rmusser01
Threat Emulation and Red Teaming Framework, The Hacking Software for normal people.
This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to extract juicy information such as LAPS passwords or any sensitive information on the screen. Blue Team member can reconstruct PNG files to see what an attacker did on a compromised host. It is extremely useful for a forensics team to extract timestamps after an attack on a host to collect evidences and perform further analysis.
Python3 version of Runscope/requestbin
One-stop shop for UEFI/BIOS specifications/utilities by UEFI.Tech community
Site Page for Infosec Reference
MySQL fake server for read files of connected clients
Windows Local Privilege Escalation from Service Account to System
A kernel mode Windows rootkit in development.
Databases with sample data for testing
Utils
Small scripts that make life better
Secure all the things
A checklist for staying safe on the internet
SimplE RePort wrIting and COllaboration tool
C# version of my Profit script.
A simple wrapper for C# tools