Pinned Repositories
Callback_Shellcode_Injection
POCs for Shellcode Injection via Callbacks
concealed_position
Bring your own print driver privilege escalation tool
CrossSiteContentHijacking
Content hijacking proof-of-concept using Flash, PDF and Silverlight
DeepVideoAnalytics
A distributed visual search and visual data analytics platform.
ExecuteAssembly
Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers, Unlinking .NET related modules, bypassing ETW+AMSI, avoiding EDR hooks via NT static syscalls (x64) and hiding imports by dynamically resolving APIs (hash).
ExecuteAssembly_Mailslot
fuzzbunch-debian
Fuzzbunch deployment for Debian - Intructions: Readme.md
injectAmsiBypass
Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.
ShellcodeTemplate
A easily modifiable shellcode template for Windows x64/x86
xiaolan65536's Repositories
xiaolan65536/DeepVideoAnalytics
A distributed visual search and visual data analytics platform.
xiaolan65536/Callback_Shellcode_Injection
POCs for Shellcode Injection via Callbacks
xiaolan65536/concealed_position
Bring your own print driver privilege escalation tool
xiaolan65536/CrossSiteContentHijacking
Content hijacking proof-of-concept using Flash, PDF and Silverlight
xiaolan65536/ExecuteAssembly
Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers, Unlinking .NET related modules, bypassing ETW+AMSI, avoiding EDR hooks via NT static syscalls (x64) and hiding imports by dynamically resolving APIs (hash).
xiaolan65536/ExecuteAssembly_Mailslot
xiaolan65536/fuzzbunch-debian
Fuzzbunch deployment for Debian - Intructions: Readme.md
xiaolan65536/injectAmsiBypass
Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.
xiaolan65536/ShellcodeTemplate
A easily modifiable shellcode template for Windows x64/x86
xiaolan65536/InlineExecute-Assembly
InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assembly execution as an alternative to Cobalt Strikes traditional fork and run execute-assembly module
xiaolan65536/LoGiC.NET
A more advanced free and open .NET obfuscator using dnlib.
xiaolan65536/nanodump
A crappy LSASS dumper with no ASCII art
xiaolan65536/Pcap-Analyzer
Python编写的简单的离线数据包分析器
xiaolan65536/pentestpackage
a package of Pentest scripts I have made or commonly use
xiaolan65536/PrivescCheck
Privilege Escalation Enumeration Script for Windows
xiaolan65536/Scan-T
a new spider based on python with more function including Network fingerprint search
xiaolan65536/SharpLoginPrompt
xiaolan65536/SliverKeylogger
xiaolan65536/ts2
xiaolan65536/ts3.github.io
xiaolan65536/WeiboImageReverse
Chrome 插件,反查微博图片po主