Skip to content
View ricardojoserf's full-sized avatar
:shipit:
Ship it!
:shipit:
Ship it!

Block or report ricardojoserf

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Pinned Loading

  1. TrickDump TrickDump Public

    Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!

    C# 522 56

  2. NativeDump NativeDump Public

    Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)

    C# 688 96

  3. SAMDump SAMDump Public

    Extract SAM and SYSTEM using Volume Shadow Copy (VSS) API. With multiple exfiltration options and XOR obfuscation

    C++ 199 27

  4. NativeBypassCredGuard NativeBypassCredGuard Public

    Bypass Credential Guard by patching WDigest.dll using only NTAPI functions

    C++ 262 32

  5. SharpCovertTube SharpCovertTube Public

    Youtube as C2 channel - Control Windows systems uploading QR videos to Youtube

    C# 96 12

  6. MemorySnitcher MemorySnitcher Public

    Vulnerable (on purpose) programs to leak NtReadVirtualMemory address for stealthier API resolution (no GetProcAddress, GetModuleHandle or LoadLibrary in the IAT)

    C++ 40 5