malware-persistence
Malware persistence info
A collection of information on malware persistence mechanisms and techniques.
Collection of malware persistence and hunting information. Be a persistent persistence hunter!
164 stars
8 watching
15 forks
last commit: 3 months ago
Linked from 2 awesome lists
malwaremalware-analysismalware-detectionmalware-persistencepersistencethreat-huntingthreat-intelligence
Related projects:
Repository | Description | Stars |
---|---|---|
hasherezade/persistence_demos | Demonstrates various persistence methods used by malware | 219 |
theflakes/reg_hunter | A tool for triaging and hunting Windows persistence mechanisms, providing forensic insights into system activity. | 142 |
last-byte/persistencesniper | A tool for detecting and identifying persistent malware techniques in Windows machines using PowerShell | 1,911 |
threatexpress/persistence-aggressor-script | A tool for creating and managing persistent malware components that can operate in multiple listener scenarios, including local and foreign listeners. | 42 |
joeavanzato/trawler | A PowerShell script designed to help Incident Responders discover potential indicators of compromise on Windows hosts by scanning for various persistence techniques. | 308 |
ntraiseharderror/kaiser | Toolset providing fileless persistence and anti-forensic capabilities for Windows 7 | 86 |
henselman-petrusek/eirene.jl | A Julia library for analyzing and visualizing topological features of point clouds | 117 |
cyborgsecurity/poisonapple | A command-line tool for simulating and demonstrating persistence techniques on macOS systems. | 221 |
nickoneill/pantry | A lightweight persistence layer for storing user data and other relevant objects in Swift | 831 |
kasperskylab/klara | Helps Threat Intelligence researchers hunt for new malware by efficiently scanning large collections of files with Yara rules | 697 |
cretezy/redux_persist | A tool to persist Redux state in Flutter applications | 130 |
zonksec/persistence-aggressor-script | A PowerShell script designed to evade detection by persisting on a compromised system through multiple evasion techniques | 172 |
0xthirteen/staykit | A persistence kit for Cobalt Strike using a custom .NET assembly and leveraging various Windows techniques to maintain access after initial access is lost. | 465 |
seandenigris/simple-persistence | Provides a simple framework for persisting Smalltalk model objects in a self-contained, incremental manner. | 17 |
dxa4481/xssoauthpersistence | Exploring various techniques for maintaining persistence via Cross-Site Scripting (XSS) and OAuth | 76 |