ar
Feedback
w0rk3r's Windows Hacking Library

w0rk3r's Windows Hacking Library

الذهاب إلى القناة على Telegram

Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r

إظهار المزيد
1 663
المشتركون
لا توجد بيانات24 ساعات
لا توجد بيانات7 أيام
لا توجد بيانات30 أيام
أرشيف المشاركات
Do You Really Know About LSA Protection (RunAsPPL)? https://itm4n.github.io/lsass-runasppl @WindowsHackingLibrary

Forging malicious DOC, undetected by all VirusTotal static engines https://arielkoren.com/blog/2020/12/24/forging-malicious-doc @WindowsHackingLibrary

Gnome is a module to load your signed driver stealthily. The driver is extracted from the Gnome loader, dropped to disk and loaded using NtLoadDriver instead of the usual service creation driver loading which can be noisy and leaves large forensic artefacts behind such as service creation, service start/stop logs etc. https://github.com/slaeryan/AQUARMOURY/tree/master/Gnome @WindowsHackingLibrary