Pinned Repositories
TartarusGate
TartarusGate, Bypassing EDRs
Amsi-Bypass-Powershell
This repo contains some Amsi Bypass methods i found on different Blog Posts.
black-hat-rust
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
DriverJack
Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths
Dumpert
LSASS memory dumper using direct system calls and API unhooking.
ghauri
An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws
HellsGate
Original C Implementation of the Hell's Gate VX Technique
Lifetime-Amsi-EtwPatch
Two in one, patch lifetime powershell console, no more etw and amsi!
min-sized-rust
🦀 How to minimize Rust binary size 📦
OSED
Containing my notes, practice binaries + solutions, blog posts, etc. for the Offensive Security Exploit Developer (OSED/EXP-301)
domainisseized's Repositories
domainisseized/ghauri
An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws
domainisseized/DriverJack
Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths
domainisseized/thread_namecalling
Process Injection using Thread Name
domainisseized/OSED
Containing my notes, practice binaries + solutions, blog posts, etc. for the Offensive Security Exploit Developer (OSED/EXP-301)
domainisseized/search.0t.rocks
domainisseized/black-hat-rust
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
domainisseized/xxe-injection-payload-list
🎯 XML External Entity (XXE) Injection Payload List
domainisseized/min-sized-rust
🦀 How to minimize Rust binary size 📦
domainisseized/Lifetime-Amsi-EtwPatch
Two in one, patch lifetime powershell console, no more etw and amsi!
domainisseized/Amsi-Bypass-Powershell
This repo contains some Amsi Bypass methods i found on different Blog Posts.
domainisseized/PoorMansArmory
Collection of malleable payloads and tools that will bypass AMSI, Windows Defender, and self-signed certificate checks.
domainisseized/VX-API
Collection of various malicious functionality to aid in malware development
domainisseized/PatchlessInlineExecute-Assembly
Porting of BOF InlineExecute-Assembly to load .NET assembly in process but with patchless AMSI and ETW bypass using hardware breakpoint.
domainisseized/TartarusGate
TartarusGate, Bypassing EDRs
domainisseized/Skrull
Skrull is a malware DRM, that prevents Automatic Sample Submission by AV/EDR and Signature Scanning from Kernel. It generates launchers that can run malware on the victim using the Process Ghosting technique. Also, launchers are totally anti-copy and naturally broken when got submitted.
domainisseized/HellsGate
Original C Implementation of the Hell's Gate VX Technique
domainisseized/Dumpert
LSASS memory dumper using direct system calls and API unhooking.