Windows Events Attack Samples
-
Updated
Jan 24, 2023 - HTML
Windows Events Attack Samples
Weaponize DLL hijacking easily. Backdoor any function in any DLL.
Resources About Windows Security. 1100+ Open Source Tools. 3300+ Blog Post and Videos.
A desktop application that checks security-related settings and makes recommendations for improvements without requiring central device management or automated reporting.
🐟 PoC of a VBA macro spawning a process with a spoofed parent and command line.
List of Awesome Windows Security Resources
Manipulating and Abusing Windows Access Tokens.
Windows 11 secure group policy for standalone devices
Run a program as TrustedInstaller (SYSTEM)
Blue Hammer by Nightmare-Eclipse Vulnerability Documentation & Reimplementation.
Automated CIS Benchmark Compliance Remediation for Windows Server 2019 with Ansible
Enterprise-Grade Security & Privacy Hardening Tool for Windows 11 25H2
Cobalt Strike BOF to freeze EDR/AV processes and dump LSASS using WerFaultSecure.exe PPL bypass
Cross-platform EDR in Rust for Windows ETW and Linux eBPF, with Sigma, YARA, and IOC detection.
Automated CIS Benchmark Compliance Remediation for Windows Server 2022 with Ansible
A collection of awesome ethical hacking and security related content!
I-Espresso is a tool that enables users to generate Portable Executable (PE) files from batch scripts. Leveraging IExpress, it demonstrates how file extension spoofing can be used to evade detection.
PolyEngine is an evasive PE packer designed for CTF challenges and low-level Windows security education. It focuses on bypassing EDR and AV heuristics through a layered stack of in-memory execution and obfuscation techniques.
Xploitra is a powerful reverse shell payload generator for educational and security testing. It offers customizable payloads with advanced obfuscation and session management, making it ideal for simulating real-world attack scenarios and assessing system security.
EDR & AV Bypass Arsenal— a comprehensive collection of tools, patches, and techniques for evading modern EDR and antivirus defenses.
Add a description, image, and links to the windows-security topic page so that developers can more easily learn about it.
To associate your repository with the windows-security topic, visit your repo's landing page and select "manage topics."