Processus

Results 8 repositories owned by Processus

ETWMonitor

75
Stars
7
Forks
Watchers

Windows notifier tool that detects RDP, SMB and RPC connections by monitoring ETW event logs

HEKATOMB

448
Stars
49
Forks
Watchers

Hekatomb is a python script that connects to LDAP directory to retrieve all computers and users informations. Then it will download all DPAPI blob of all users from all computers and uses Domain backu...

Processus-APK

15
Stars
2
Forks
Watchers

L'application officielle des Tutos de Processus

vulnspy

35
Stars
6
Forks
Watchers

VULNSPY regularly retrieves the latest alerts published by the CERT-FR and the related vulnerabilities with their CVSS score and allows you to notify by email or by discord if a defined threshold is e...

UnhookingDLL

59
Stars
9
Forks
Watchers

This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hollowing

CobaltStrikeBypassDefender

22
Stars
9
Forks
Watchers

A launcher to load a DLL with xored cobalt strike shellcode executed in memory through process hollowing technique

Venoma

100
Stars
19
Forks
Watchers

Yet another C++ Cobalt Strike beacon dropper with Compile-Time API hashing and custom indirect syscalls execution

SharpVenoma

32
Stars
2
Forks
Watchers

CSharp reimplementation of Venoma, another C++ Cobalt Strike beacon dropper with custom indirect syscalls execution