Pinned Repositories
CIGslip
A new binary injection technique, can easily go through any #CIG protected process and slip through all possible defenses without any injection of image code pages
injection
Injector
A Windows user-mode shellcode execution tool that demonstrates various techniques that malware uses
Meetups
Meetup Related Files - https://www.meetup.com/Boston-malware-reversing-group/
RansomHub_Deobfuscator
SharpShooter
Payload Generation Framework
VendorSimTestScripts
Windows-RCE-exploits
The exploit samples database is a repository for **RCE** (remote code execution) exploits and Proof-of-Concepts for **WINDOWS**, the samples are uploaded for education purposes for red and blue teams.
smgorelik's Repositories
smgorelik/Windows-RCE-exploits
The exploit samples database is a repository for **RCE** (remote code execution) exploits and Proof-of-Concepts for **WINDOWS**, the samples are uploaded for education purposes for red and blue teams.
smgorelik/CIGslip
A new binary injection technique, can easily go through any #CIG protected process and slip through all possible defenses without any injection of image code pages
smgorelik/RansomHub_Deobfuscator
smgorelik/injection
smgorelik/VendorSimTestScripts
smgorelik/Injector
A Windows user-mode shellcode execution tool that demonstrates various techniques that malware uses
smgorelik/Meetups
Meetup Related Files - https://www.meetup.com/Boston-malware-reversing-group/
smgorelik/SharpShooter
Payload Generation Framework
smgorelik/DEFCON-31-Syscalls-Workshop
Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".
smgorelik/domato
DOM fuzzer
smgorelik/Random-CSharpTools
Collection of CSharp Assemblies focused on Post-Exploitation Capabilities
smgorelik/1195777-chrome0day
smgorelik/API-Integration-Examples
Provides examples of how to pull data through API integrations with known IT platforms.
smgorelik/CobaltStrike
CobaltStrike's source code
smgorelik/CVE-2023-21823
CVE-2023-21823 PoC
smgorelik/CVE-2023-28252
smgorelik/CVE-2023-36874
CVE-2023-36874 PoC
smgorelik/defcon_27_windbg_workshop
DEFCON 27 workshop - Modern Debugging with WinDbg Preview
smgorelik/DueDLLigence
smgorelik/exploits
smgorelik/fido
Teaching old shellcode new tricks
smgorelik/hashdb_malware
Assortment of hashing algorithms used in malware
smgorelik/Microsoft-Extractor-Suite
A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.
smgorelik/Open-Source-YARA-rules
YARA Rules I come across on the internet
smgorelik/pacu
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
smgorelik/pcap_mini_ctf
smgorelik/RansomSimulator
smgorelik/UACBypass
smgorelik/VulnerableApps
smgorelik/WindbgExtensions
Cool Javascript extensions for Windbg