unhook-bof
API hook remover
Tool to remove API hooks from a Beacon process.
Remove API hooks from a Beacon process.
263 stars
7 watching
58 forks
Language: C
last commit: over 3 years ago Related projects:
Repository | Description | Stars |
---|---|---|
| Removes API hooks from a malicious process | 54 |
| An implementation of a Zero Logon protocol Bounce Of Flood (ZoBoF) vulnerability exploitation technique | 157 |
| Creates a tool to extract registry keys from Windows systems using a Beacon Object File | 188 |
| A tool that detects userland API hooks installed by Anti-Virus/EDR software to prevent post-exploitation actions. | 97 |
| Exploits a vulnerability in SMBv3 compression to achieve privilege escalation and process manipulation. | 68 |
| Bypassing memory scanning to evade detection by the Karbenz CASB (Content Awareness Security Platform) security solution | 24 |
| A proof-of-concept project demonstrating how to mask Beacon's payload execution in Cobalt Strike while executing a user-provided BOF. | 110 |
| A tool that attempts to detect userland API hooks in place by AV/EDR | 148 |
| A tool designed to automate checks in monorepos during the pre-commit stage of Git | 104 |
| Creates C programs with custom API calls using Microsoft's documentation endpoint and grep results from mingw header files | 222 |
| A collection of beacon object files designed to be used in a remote access tool like Cobalt Strike. | 170 |
| A collection of compiled beacon object files from the CobaltStrike platform. | 101 |
| A tool that intercepts and modifies Objective-C blocks at runtime. | 845 |
| A tool for extracting browser master keys to decrypt user cookies | 172 |
| An HTTP microframework allowing developers to easily expose scripts as APIs and restrict execution. | 614 |