A technique that utilizes Alternate Data Streams (ADS) to bypass AppLocker default policies by loading DLL/CPL binaries through various invocation methods like wmic, start, rundll32, and more, exploiting the ability of low privileged security groups to write to specific files and directories.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A tool for automated security scanning of web applications and manual penetration testing.
SharpEDRChecker scans system components to detect security products and tools.
Caldera is a cybersecurity framework by MITRE for automated security assessments and adversary emulation.
Emulates Docker HTTP API with event logging and AWS deployment script.
Comprehensive tutorial on modern exploitation techniques with a focus on understanding exploitation from scratch.
CLI tool for offensive and defensive security assessments on the Joi validator library with a wide range of attacks.
MITRE Caldera™ is a cybersecurity platform that automates adversary emulation and supports red team operations through a modular framework built on MITRE ATT&CK.
Phrack Magazine is a digital magazine that focuses on computer security and hacking, featuring articles, interviews, and tutorials on various topics related to computer security.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.