KDStab

Process manipulator

A tool used to bypass Windows Defender by manipulating process integrity and privileges

BOF combination of KillDefender and Backstab

GitHub

156 stars
5 watching
37 forks
Language: C
last commit: over 3 years ago

Related projects:

RepositoryDescriptionStars
octoberfest7/killdefender_bofA tool that allows an attacker to elevate privileges and gain control over the Windows Defender service62
s1ckb0y1337/tokenplayerA tool designed to manipulate and abuse Windows access tokens for exploitation and learning purposes.269
vi/timeskewA utility to manipulate time reporting in Linux processes for testing and development purposes44
redmed-x/operatorskitA collection of tools for interacting with and manipulating Windows systems, primarily designed for use in penetration testing and security research.551
trustedsec/cs-remote-ops-bofProvides tools and primitives for interacting with Microsoft Windows systems remotely.892
redsection/offensivephA tool that utilizes an old driver to bypass user-mode access controls and inject malicious code into processes329
sindresorhus/ansi-escapesA collection of functions for manipulating the terminal screen in various ways498
federicodotta/bridaA tool that bridges Burp Suite and Frida to manipulate mobile application behavior by dynamically modifying their internal logic1,657
eladshamir/whiskerA tool for manipulating Active Directory user and computer accounts by adding shadow credentials.824
octoberfest7/eventvieweruac_bofA tool that bypasses UAC restrictions on Windows by deserializing and executing malicious code in Event Viewer.129
octoberfest7/dropspawn_bofA CobaltStrike payload that uses DLL hijacking to spawn additional Beacons on Windows systems219
ajpc500/bofsA collection of tools and utilities to manipulate system calls, memory, and processes for exploitation and reverse engineering purposes.554
octoberfest7/cohab_processesHelps identify foreign processes on a host machine by highlighting unknown processes81
rasta-mouse/ppenumA tool to determine the protection level of a process using a simple Binary Object Formatter (BOF) approach.111
wjakob/filesystemA lightweight class for manipulating paths on Linux/Windows/Mac OS245