This is your work, valued
Red teamer/mediocre developer
hiding-your-syscalls. Some source code to demonstrate avoiding certain direct syscall detections by locating and JMPing to a legitimate syscall instruction within NTDLL.
219SharpRDPThief. A C# implementation of RDPThief to steal credentials from RDP.
167BOFMask. C
132VectoredExceptionHandling. C
110Being-A-Good-CLR-Host. C
106SharpBuster. SharpBuster is a C# implementation of a directory brute forcing tool. It's designed to be used via Cobalt Strike's execute-assembly and similar tools, when running a similar tool over a SOCKS proxy is not feasible.
64suspendedunhook. C
42DInvokeProcessHollowing. C#
31hook-integrity-checks. C
23Haskell-Reverse-Shell. Haskell
11PrefetchMute. C#
8DriverBlock. C++
6passthehashbrowns.github.io. Ruby
5execute-multiple-assemblies. C++
5OffensiveHaskell. Haskell
4XorShellcode. C#
3MicroBurst. A collection of scripts for assessing Microsoft Azure security
2process_doppelganging. My implementation of enSilo's Process Doppelganging (PE injection technique)
2Azure-Managed-Identity-REST-Examples. PowerShell
2