
Dropper-GCleaner-C2-Infrastructure-Kernel-Driver-PowerShell-Conhost-Payload-Analysis
Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Kernel module for volatile memory acquisition from Linux and Android devices, producing forensically sound captures to disk or over the network.

BOF to run PE in Cobalt Strike Beacon without console creation

Library for unwinding processor call stacks, supporting multiple architectures and operating systems, with build and regression testing instructions.

C library for stack unwinding and backtrace generation, supporting multiple architectures and operating systems, with build and regression testing…

A canary designed to minimize the impact from certain Ransomware actors
