Pinned Repositories
A-Study-in-Obfuscation
A Study in Obfuscation: Analyzing the effect of various techniques to bypass AV engines
ETWListicle
List the ETW provider(s) in the registration table of a process.
exe_who
Executables on Disk? Bleh 🤮
funcshenanigans
A bunch of shenanigans using functions, VEH and more
function-collections
A collection of PoCs to do common things in unconventional ways
HelloWorldDriver
Get started with writing your first ever Windows Driver
hoontr
A hoontr must hoont
injection-for-dummies
A collection of PoCs for different injection techniques on Windows!
lordran.polymorphic.shellcode
Things i do because i saw it on twitter on a weekend
sinister-vsix
Blog/Journal on how to backdoor VSCode extensions
whokilleddb's Repositories
whokilleddb/function-collections
A collection of PoCs to do common things in unconventional ways
whokilleddb/exe_who
Executables on Disk? Bleh 🤮
whokilleddb/hoontr
A hoontr must hoont
whokilleddb/sinister-vsix
Blog/Journal on how to backdoor VSCode extensions
whokilleddb/ETWListicle
List the ETW provider(s) in the registration table of a process.
whokilleddb/injection-for-dummies
A collection of PoCs for different injection techniques on Windows!
whokilleddb/funcshenanigans
A bunch of shenanigans using functions, VEH and more
whokilleddb/HelloWorldDriver
Get started with writing your first ever Windows Driver
whokilleddb/SOAPHound
SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Directory Web Services (ADWS) protocol.
whokilleddb/lordran.polymorphic.shellcode
Things i do because i saw it on twitter on a weekend
whokilleddb/BoosterDriver
A step-by-step walkthrough of how to write a Client and a Driver to communicate with each other and boost the priority of a thread.
whokilleddb/ProcReveal
A kernel driver to get a Handle to virtually *every* process
whokilleddb/Limelighter
A tool for generating fake code signing certificates or signing real ones
whokilleddb/ESC-C2-fied
C2 friendly fork of Evil SQL Client (ESC)
whokilleddb/ghosted
A Process Ghosting PoC written in C
whokilleddb/oops-c
I did an oops-c
whokilleddb/amsi-patching-for-dummies
Learn about AMSI patching with a real example!
whokilleddb/BRC4-BOF-Artillery
BOFs for BRC4
whokilleddb/etw-patching-for-dummies
ETW patching for dummies
whokilleddb/exec-assembly
Execute .NET assemblies in Memory!
whokilleddb/COMDumpster
A C nerd's guide to COM
whokilleddb/load-my-clr
Run managed code from unmanaged process!
whokilleddb/blogs
Yes!, I have a blog now!
whokilleddb/ev0te
E-voting and related bal-bichi
whokilleddb/GOAD-Notes
My notes for GOAD(https://github.com/Orange-Cyberdefense/GOAD)
whokilleddb/I-S00N
whokilleddb/jsonp-poc-app
A Demo application to demonstrate JSONP vulnerability
whokilleddb/pygoat
intentionally vuln web Application Security in django
whokilleddb/wayback
A command line tool to scrape targets from the Wayback Machine
whokilleddb/what-is-my-product-key
Find your Windows OEM Product Key!