001SPARTaN / FaceDancerLinks
Playing around with token manipulation in C#.
☆28Updated 5 years ago
Alternatives and similar repositories for FaceDancer
Users that are interested in FaceDancer are comparing it to the libraries listed below
Sorting:
- C# DCOM Execution☆18Updated 6 years ago
- ☆36Updated 6 years ago
- ☆54Updated 6 years ago
- A script that can be deployed to Azure App for C2 / Proxy / Redirector☆40Updated 6 years ago
- Helper script for mangling CS payloads☆51Updated 6 years ago
- Initial Commit of Coresploit☆56Updated 3 years ago
- Code that can be used to create/steal/manipulate token contexts in a program. Can be implemented into other C# projects.☆12Updated 6 years ago
- A repo to hold any bypasses I work on/study/whatever☆19Updated 4 years ago
- ☆54Updated 7 years ago
- .Net Assembly to block ETW telemetry in current process☆79Updated 5 years ago
- ☆35Updated 7 years ago
- C# Implementation of Get-VaultCredential☆14Updated 7 years ago
- C# .NET Assembly for interacting with File Object DACLs☆44Updated 5 years ago
- Miscellaneous C-Sharp projects for red team activities☆24Updated 3 years ago
- My musings with C#☆28Updated 2 years ago
- Aggressor Script to Execute Assemblies from Github☆71Updated 4 years ago
- External C2 Using IE COM Objects☆101Updated 6 years ago
- Bypass AMSI and Executing PowerShell scripts from C# - using CyberArk's method to bypass AMSI☆31Updated 5 years ago
- Cobalt Strike cna script for randomized argument spoofing☆51Updated 6 years ago
- Extracts all base64 ticket data from a rubeus /dump file and converts the tickets to ccache files for easy use with other tools.☆67Updated 4 years ago
- Miscellaneous PowerShell scripts for red team activities☆16Updated 3 weeks ago
- Send message on Telegram when you get a new Cobalt Strike beacon☆21Updated 5 years ago
- CobaltStrike Aggressor Script to utilise FuzzySec's Windows Notification Framework Research to Spawn a Shell under Explorer.exe☆16Updated 6 years ago
- Bypass AMSI and Defender using Ordinal Values☆42Updated 5 years ago
- Privesc through import of Sheduled tasks + Hardlinks - CVE-2019-1069☆36Updated 6 years ago
- ☆37Updated 7 years ago
- I used this to see if an EDR is running in Safe Mode☆37Updated 4 years ago
- Bash one-liner that will parse harmj0y's SharpRoast or Rebeus kerberoast into hashcat crack-able format.☆32Updated 6 years ago
- Microsoft Applocker evasion tool☆39Updated 5 years ago
- ☆14Updated 5 years ago