Process_Protection_Level_BOF
by EspressoCake
AI summary
Process protection checker
A tool that helps operators determine the protection level of a process before attempting to access its memory
- stars
- 51
- forks
- 8
- watching
- 4
Similar projects
Found by comparing what the projects do, not just their names.
Process protection checker
A tool to determine the protection level of a process using a simple Binary Object Formatter (BOF) approach.
Exclusion tool
Tools to determine Windows Defender exclusions
Process dumper
A tool for dumping the memory contents of a protected process on Windows
Process killer
BOF implementation of a research concept allowing for controlled deletion of processes
Privilege toggler
A tool to add or remove specific privilege rights from the token of the current process
PE DLL inspector
An enumeration tool to inspect PE files and extract information about loaded DLLs and their imported functions
Firewall Exploit
An exploit technique allowing interaction with Windows software firewall via COM interfaces.
DLL Search Enumerator
A tool to enumerate the search order of DLL resolution and potentially gain information about a file's mutability.
String finder
A tool for searching for specific strings within files using a needle-sift algorithm
Push blocker
A tool to temporarily disable branch protection to allow administrator pushes
Privilege escalation tool
A tool that allows an attacker to elevate privileges and gain control over the Windows Defender service
Process enumerator
An exploit tool that uses direct system calls to enumerate processes based on specific loaded modules or process handles
Exclusion tool
A tool to add exclusions to a security system's defender to prevent false positives or unwanted alerts
BOF handler
An implementation of in-house CoffLoader supporting CobaltStrike standard BOF and BSS initialized variables.
Portability checker
Detects portability issues in BPEL code to ensure compatibility across different engines and environments.