dynmx (spoken dynamics) is a signature-based detection approach for behavioural malware features based on Windows API call sequences. In a …

dynmx (spoken dynamics) is a signature-based detection approach for behavioural malware features based on Windows API call sequences. In a …
A cross-platform, collaborative, Command & Control framework written in C#, designed for red teaming and ease of use. HardHat is …
An automatic unpacker and logger for DotNet Framework targeting files! This tool has been unveiled at Black Hat USA 2022. …
Introduction Another shellcode injection technique using C++ that attempts to bypass Windows Defender using XOR encryption sorcery and UUID strings …
In preparation for a VBS AV Evasion Stream/Video I was doing some research for Office Macro code execution methods and …
Welcome! This is a utility that can be compiled with Visual Studio 2019 (or newer). The goal of this program …
EDRSandBlast is a tool written in C that weaponize a vulnerable signed driver to bypass EDR detections (Kernel callbacks and …
Read this carefully before proceeding. This repository contains live malware samples for use in the Practical Malware Analysis & Triage …
This utility focuses on shellcode injection techniques to demonstrate methods that malware may use to execute shellcode on a victim …
EXOCET is superior to Metasploit’s “Evasive Payloads” modules as EXOCET uses AES-256 in GCM Mode (Galois/Counter Mode). Metasploit’s Evasion Payloads …