UltimateWDACBypassList

Application whitelist bypass list

A centralized resource for bypassing Windows Device Guard Application Whitelisting (WDAC) policies.

A centralized resource for previously documented WDAC bypass techniques

GitHub

482 stars
15 watching
68 forks
last commit: 7 months ago

Related projects:

Repository Description Stars
api0cradle/ultimateapplockerbypasslist A repository documenting common techniques to bypass AppLocker security policies 1,914
octoberfest7/eventvieweruac_bof A tool that bypasses UAC restrictions on Windows by deserializing and executing malicious code in Event Viewer. 128
boku7/injectetwbypass Tool to bypass ETW (Event Tracing for Windows) security measure in remote processes by injecting a custom syscall 277
vincentcox/bypass-firewalls-by-dns-history Automatically identifies potential bypass points around web application firewalls (WAFs) by analyzing DNS history records and HTTP responses. 1,197
encodegroup/uac-silentclean A technique to bypass Windows UAC security restrictions using a DLL planting method for executing malicious code in high integrity processes. 189
tyranid/deviceguardbypasses Provides bypasses and tools to analyze Windows 10's Device Guard restrictions 133
masatokinugawa/filterbypass Provides cheat sheets and guidance on bypassing browser XSS filters to inject malicious content into web pages 1,116
netero1010/trustedpath-uacbypass-bof Tools and techniques to bypass Windows UAC restrictions on executable files by utilizing DCOM objects 117
julianjm/waf_bypadd A tool designed to bypass WAFs by padding HTTP requests with dummy data to evade detection and analysis. 4
codewatchorg/bypasswaf An extension that automatically adds headers to Burp requests to bypass certain Web Application Firewall products. 330
snoopwpf/snoopwpf A utility tool for inspecting and manipulating properties of WPF applications 2,203
owasp/owasp-vwad A registry of known vulnerable web applications 873
0xradi/owasp-web-checklist A comprehensive checklist for web application security testing and vulnerability assessment 1,750
pwntester/serialkillerbypassgadgetcollection A collection of bypass gadgets to extend and wrap ysoserial payloads 350
trya9ain/bypassadduser A C# tool to bypass Windows user account management limitations by exploiting configuration settings. 45