ewilded
The Ministry of Health warns: programming seriously harms you and others around you.
hackingiscoolPoland
Pinned Repositories
api-ms-win-code-debug-l1-1-0
A sample DLL appending a text file with the list of high integrity/SYSTEM process that loaded it (for issue testing).
icmpsh-s-linux
GNU/Linux version of the https://github.com/inquisb/icmpsh slave
Intrusive
Intrusive is a realtime log analysis tool designed to perform IDS and anomalies detection functions
localdataHog
String-based secret-searching tool (high entropy and regexes) based on truffleHog
parambrute
A little Burp Scanner extension (python) detecting page's parameters (fast binary search).
PPID_spoof
An example of how to spawn a process with a spoofed parent PID (Visual C++)
psychoPATH
psychoPATH - an advanced path traversal tool. Features: evasive techniques, dynamic web root list generation, output encoding, site map-searching payload generator, LFI mode, nix & windows support, single byte generator, payload export.
SCARY
PHP Source Code Analyzer written in Perl (taint checking)
shelling
SHELLING - a comprehensive OS command injection payload generator
xssValidatorTestCases
A set of test case scripts for xssValidator Burp Extension
ewilded's Repositories
ewilded/shelling
SHELLING - a comprehensive OS command injection payload generator
ewilded/psychoPATH
psychoPATH - an advanced path traversal tool. Features: evasive techniques, dynamic web root list generation, output encoding, site map-searching payload generator, LFI mode, nix & windows support, single byte generator, payload export.
ewilded/PPID_spoof
An example of how to spawn a process with a spoofed parent PID (Visual C++)
ewilded/icmpsh-s-linux
GNU/Linux version of the https://github.com/inquisb/icmpsh slave
ewilded/SCARY
PHP Source Code Analyzer written in Perl (taint checking)
ewilded/localdataHog
String-based secret-searching tool (high entropy and regexes) based on truffleHog
ewilded/api-ms-win-code-debug-l1-1-0
A sample DLL appending a text file with the list of high integrity/SYSTEM process that loaded it (for issue testing).
ewilded/DFIR
Wykłady stworzone z myślą o studentach Politechniki Opolskiej (Wykrywanie i reagowanie na incydenty bezpieczeństwa).
ewilded/dictator
Custom dictionary generation framework intended for enumertion of URL-s (directories, variables). With a bit of adjustment it would also be a good fit for passwords as well. This is currently NOT a Burp extension.
ewilded/Windows_persistence
A collection of persistence methods for Windows
ewilded/registry_hidden_key
A CPP demo POC based on https://github.com/ewhitehats/InvisiblePersistence/blob/master/InvisibleRegValues_Whitepaper.pdf
ewilded/CVE-2023-38041-POC
Ivanti Pulse Secure Client Connect Local Privilege Escalation CVE-2023-38041 Proof of Concept
ewilded/CVE-2024-0197-POC
Proof of concept for Local Privilege Escalation in Thales Sentinel HASP LDK.
ewilded/CVE-2024-25376-POC
CVE-2024-25376 - Local Privilege Escalation in TUSBAudio
ewilded/ZScaler_msiexec_LPE_2023
My proof of concept for a Local Privilege Escalation via msiexec in ZScaler Client Connector 3.7.2.18
ewilded/CVE-2023-37250-POC
PoC
ewilded/fucking_with_filenames
ewilded/Mobile
Wykłady stworzone z myślą o studentach Politechniki Opolskiej
ewilded/CVE-2024-35315-POC
Mitel Collab Local Privilege Escalation CVE-2024-35315 PoC
ewilded/attack_monitor
Endpoint detection & Malware analysis software
ewilded/CVE-2023-7016-POC
POC for the flaw in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows that allows an attacker to execute code at a SYSTEM level via local access.
ewilded/distributions
NodeSource Node.js Binary Distributions
ewilded/InfinityHook
Hook system calls, context switches, page faults and more.
ewilded/MBE
Course materials for Modern Binary Exploitation by RPISEC
ewilded/MBE-snippets
ewilded/MimeSpray
MimeCast Password Spraying Tool
ewilded/param-miner
ewilded/process-injection-postgre
A proof of concept for https://hackingiscool.pl/breaking-out-from-stripped-tokens-using-process-injection/
ewilded/SharpBlock
A method of bypassing EDR's active projection DLL's by preventing entry point exection
ewilded/VHostScan
A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and dynamic default pages.