0x09AL / RdpThief
Extracting Clear Text Passwords from mstsc.exe using API Hooking.
☆1,154Updated last month
Related projects: ⓘ
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆1,385Updated last year
- LSASS memory dumper using direct system calls and API unhooking.☆1,469Updated 3 years ago
- New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.☆893Updated 6 years ago
- Open-Source Shellcode & PE Packer☆1,812Updated 7 months ago
- ☆1,378Updated last year
- SharpDPAPI is a C# port of some Mimikatz DPAPI functionality.☆1,144Updated 2 months ago
- .NET IPv4/IPv6 machine-in-the-middle tool for penetration testers☆787Updated 2 years ago
- Process Injection☆750Updated 2 years ago
- A tool to elevate privilege with Windows Tokens☆1,016Updated 11 months ago
- Porting of mimikatz sekurlsa::logonpasswords, sekurlsa::ekeys and lsadump::dcsync commands☆960Updated 2 years ago
- Also known by Microsoft as Knifecoat☆1,103Updated last year
- SafetyKatz is a combination of slightly modified version of @gentilkiwi's Mimikatz project and @subtee's .NET PE Loader☆1,213Updated 4 years ago
- Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources☆1,479Updated last year
- A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from …☆852Updated 3 years ago
- A tool to kill antimalware protected processes☆1,370Updated 3 years ago
- A method of bypassing EDR's active projection DLL's by preventing entry point exection☆1,094Updated 3 years ago
- Local Service to SYSTEM privilege escalation from Windows 7 to Windows 10 / Server 2019☆1,564Updated 2 weeks ago
- Windows Event Log Killer☆1,742Updated 11 months ago
- This program is designed to demonstrate various process injection techniques☆1,056Updated last year
- My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+☆1,029Updated last year
- A tool to create a JScript file which loads a .NET v2 assembly from memory.☆1,230Updated 3 years ago
- A native backdoor module for Microsoft IIS (Internet Information Services)☆530Updated 4 years ago
- Fork of SafetyKatz that dynamically fetches the latest pre-compiled release of Mimikatz directly from gentilkiwi GitHub repo, runtime pat…☆790Updated 3 years ago
- Windows AV Evasion☆729Updated 4 years ago
- Another Windows Local Privilege Escalation from Service Account to System☆1,028Updated 3 years ago
- The Hunt for Malicious Strings☆1,048Updated 2 years ago
- AV/EDR evasion via direct system calls.☆1,776Updated last year
- CACTUSTORCH: Payload Generation for Adversary Simulations☆994Updated 6 years ago
- PowerShell rebuilt in C# for Red Teaming purposes☆959Updated 10 months ago
- Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched☆575Updated 4 years ago