countercept
Here are 31 public repositories matching this topic...
A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.
-
Updated
Feb 3, 2020 - Python
A helper script for unpacking and decompiling EXEs compiled from python code.
-
Updated
Aug 15, 2024 - Python
A PoC implementation for spoofing arbitrary call stacks when making sys calls (e.g. grabbing a handle via NtOpenProcess)
-
Updated
Jun 30, 2022 - C++
Incident Response collection and processing scripts with automated reporting scripts
-
Updated
Jun 25, 2024 - Shell
A python2 script for processing a PCAP file to decrypt C2 traffic sent to DOUBLEPULSAR implant
-
Updated
Apr 17, 2017 - Python
Scripts for performing and detecting parent PID spoofing
-
Updated
May 16, 2020 - PowerShell
Data visualization for blue teams
-
Updated
Jan 20, 2023 - Svelte
A utility to use the usermode shellcode from the DOUBLEPULSAR payload to reflectively load an arbitrary DLL into another process, for use in testing detection techniques or other security research.
-
Updated
Jun 27, 2017 - C
-
Updated
Sep 19, 2019 - C++
A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique
-
Updated
Dec 6, 2018 - C#
ESF modular ingestion tool for development and research.
-
Updated
Dec 21, 2021 - Objective-C
A document tagging library
-
Updated
Jul 6, 2023 - Rust
A collection of useful radare2 scripts!
-
Updated
Feb 2, 2018 - Python
A triage data collection script for macOS
-
Updated
Nov 27, 2020 - Shell
-
Updated
Oct 23, 2020
RemotePSpy provides live monitoring of remote PowerShell sessions, which is particularly useful for older (pre-5.0) versions of PowerShell which do not have comprehensive logging facilities built in.
-
Updated
Mar 12, 2020 - Python
A higher-level wrapper on top of the official bson & mongodb crates.
-
Updated
May 25, 2024 - Rust
Improve this page
Add a description, image, and links to the countercept topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the countercept topic, visit your repo's landing page and select "manage topics."