Kudaes/Bin-Finder

Detect EDR's exceptions by inspecting processes' loaded modules

Rustwindowsrusthackingredteam
This is stars and forks stats for /Kudaes/Bin-Finder repository. As of 29 Apr, 2024 this repository has 96 stars and 13 forks.

Description This tool looks for either the processes that have a certain binary loaded or the processes that don't. This is useful in the following scenarios: It allows to detect processes where an specific EDR/AV dll is not loaded. This could lead to EDR's exception detection. It allows to obtain the PID of an specific process with a minimum cross process activity (e.g. looking for processes with c:\windows\sytem32\lsass.exe loaded will give us the Lsass' PID). It allows to obtain the PID of a service...
Read on GithubGithub Stats Page
repotechsstarsweeklyforksweekly
nozwock/yanuRustShellJust1540100
go-outside-labs/mev-toolkitShellPythonDockerfile510+6118+2
Genymobile/gnirehtetJavaRustOther5.4k05310
sparshg/pid-balancerRustHTML125020
agg23/fpga-tamagotchiSystemVerilogVerilogTcl83010
lens-protocol/momokaTypeScriptRustJavaScript1870490
PeterRK/PageBloomFilterAssemblyJavaC#131010
memorysafety/rav1dAssemblyRustC154090
poad/web-terminalDockerfileTypeScriptHTML2000
dss-extensions/dss_capiPascalC++Other270120