es
Feedback
w0rk3r's Windows Hacking Library

w0rk3r's Windows Hacking Library

Ir al canal en Telegram

Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r

Mostrar más
El país no está especificadoTecnologías y Aplicaciones42 664
1 663
Suscriptores
Sin datos24 horas
Sin datos7 días
Sin datos30 días
Archivo de publicaciones
Do You Really Know About LSA Protection (RunAsPPL)? https://itm4n.github.io/lsass-runasppl @WindowsHackingLibrary

Forging malicious DOC, undetected by all VirusTotal static engines https://arielkoren.com/blog/2020/12/24/forging-malicious-doc @WindowsHackingLibrary

Gnome is a module to load your signed driver stealthily. The driver is extracted from the Gnome loader, dropped to disk and loaded using NtLoadDriver instead of the usual service creation driver loading which can be noisy and leaves large forensic artefacts behind such as service creation, service start/stop logs etc. https://github.com/slaeryan/AQUARMOURY/tree/master/Gnome @WindowsHackingLibrary