Skip to content
View thefLink's full-sized avatar

Block or report thefLink

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Pinned Loading

  1. codewhitesec/HandleKatz codewhitesec/HandleKatz Public

    PIC lsass dumper using cloned handles

    C 593 108

  2. Hunt-Sleeping-Beacons Hunt-Sleeping-Beacons Public

    Aims to identify sleeping beacons

    C 667 63

  3. RecycledGate RecycledGate Public

    Hellsgate + Halosgate/Tartarosgate. Ensures that all systemcalls go through ntdll.dll

    C 503 58

  4. DeepSleep DeepSleep Public

    A variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC

    C 379 57

  5. Hunt-Weird-Syscalls Hunt-Weird-Syscalls Public

    ETW based POC to identify direct and indirect syscalls

    C++ 193 24

  6. Hunt-Weird-ImageLoads Hunt-Weird-ImageLoads Public

    Small tool to play with IOCs caused by Imageload events

    C++ 44 8