0r13lc0ch4v1 / HideFromAMSILinks
Bypass AMSI and Executing PowerShell scripts from C# - using CyberArk's method to bypass AMSI
☆31Updated 5 years ago
Alternatives and similar repositories for HideFromAMSI
Users that are interested in HideFromAMSI are comparing it to the libraries listed below
Sorting:
- Encrypted Shellcode Loader Generator☆22Updated 6 years ago
- ☆36Updated 6 years ago
- CobaltStrike Aggressor Script to utilise FuzzySec's Windows Notification Framework Research to Spawn a Shell under Explorer.exe☆16Updated 6 years ago
- A quick tool for hiding a new process running shellcode.☆57Updated 5 years ago
- C# DCOM Execution☆18Updated 5 years ago
- ☆54Updated 6 years ago
- A repo to hold any bypasses I work on/study/whatever☆19Updated 4 years ago
- Playing around with token manipulation in C#.☆28Updated 5 years ago
- An example of how to spawn a process with a spoofed parent PID (Visual C++)☆27Updated 6 years ago
- A VBA implementation of the RunPE technique or how to bypass application whitelisting.☆14Updated 6 years ago
- Files for http://deniable.org/windows/windows-callbacks☆25Updated 5 years ago
- Code that can be used to create/steal/manipulate token contexts in a program. Can be implemented into other C# projects.☆12Updated 6 years ago
- Sound Research SECOMN service Privilege Escalation (windows 10)☆40Updated 5 years ago
- Experiments on the Windows Internals☆30Updated 5 years ago
- Hide Mimikatz From Process Lists☆17Updated 10 years ago
- I used this to see if an EDR is running in Safe Mode☆37Updated 4 years ago
- Execute shellcode with syscalls from C# .dll☆12Updated 5 years ago
- Proof of concept of VMSA-2017-0012☆41Updated 7 years ago
- ☆18Updated 3 years ago
- CVE-2020-1048 bypass: binary planting PoC☆32Updated 4 years ago
- C# .NET Assembly for interacting with File Object DACLs☆43Updated 5 years ago
- Persistent through COM Hijacking☆21Updated 6 years ago
- Loads shellcode from a resource file.☆22Updated 5 years ago
- C# Implementation of Get-VaultCredential☆14Updated 6 years ago
- Windows Shellcode Testing Utility to Run Shellcode From A File☆12Updated 5 years ago
- SharpDir is a simple code set to search both local and remote file systems for files and is compatible with Cobalt Strike.☆27Updated 6 years ago
- CVE-2019-1064 Local Privilege Escalation Vulnerability☆24Updated 6 years ago
- ☆54Updated 6 years ago
- IIS Handler for *.ps1 files☆9Updated 5 years ago
- This tool is designed to simplify and automate the extraction and organization of useful data from Cobalt Strike logs.☆18Updated 6 years ago