Process_Protection_Level_BOF
Process protection checker
A tool that helps operators determine the protection level of a process before attempting to access its memory
51 stars
4 watching
8 forks
Language: C
last commit: about 5 years agoRelated projects:
| Repository | Description | Stars |
|---|---|---|
| A tool to determine the protection level of a process using a simple Binary Object Formatter (BOF) approach. | 111 | |
| Tools to determine Windows Defender exclusions | 241 | |
| A tool for dumping the memory contents of a protected process on Windows | 136 | |
| BOF implementation of a research concept allowing for controlled deletion of processes | 171 | |
| A tool to add or remove specific privilege rights from the token of the current process | 52 | |
| An enumeration tool to inspect PE files and extract information about loaded DLLs and their imported functions | 83 | |
| An exploit technique allowing interaction with Windows software firewall via COM interfaces. | 100 | |
| A tool to enumerate the search order of DLL resolution and potentially gain information about a file's mutability. | 141 | |
| A tool for searching for specific strings within files using a needle-sift algorithm | 30 | |
| A tool to temporarily disable branch protection to allow administrator pushes | 72 | |
| A tool that allows an attacker to elevate privileges and gain control over the Windows Defender service | 62 | |
| An exploit tool that uses direct system calls to enumerate processes based on specific loaded modules or process handles | 266 | |
| A tool to add exclusions to a security system's defender to prevent false positives or unwanted alerts | 32 | |
| An implementation of in-house CoffLoader supporting CobaltStrike standard BOF and BSS initialized variables. | 48 | |
| Detects portability issues in BPEL code to ensure compatibility across different engines and environments. | 4 |