0xflagplz / Xll-Payload-Generator
Excel Add In Payload Generator
☆10Updated last year
Alternatives and similar repositories for Xll-Payload-Generator:
Users that are interested in Xll-Payload-Generator are comparing it to the libraries listed below
- HTML smuggling is not an evil, it can be useful☆13Updated 2 years ago
- Rewrite to fit my needs☆27Updated 6 months ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated 8 months ago
- ☆24Updated last year
- Enumerate the Domain for Readable and Writable Shares☆16Updated 7 months ago
- DFSCoerce exe revisited version with custom authentication☆38Updated last year
- Create PDFs with HTML smuggling attachments that save on opening the document.☆29Updated last year
- Windows Thread Pool Injection Havoc Implementation☆28Updated 10 months ago
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated last year
- Items related to the RedELK workshop given at security conferences☆27Updated last year
- Impacket pre-compiled binaries☆15Updated last year
- Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by …☆21Updated last year
- ☆16Updated 3 months ago
- A havoc UI python module to help in reporting and vulnerabilities to exploit on an internal network.☆12Updated last year
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated last year
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated 6 months ago
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆68Updated 8 months ago
- Lifetime AMSI bypass.☆35Updated 7 months ago
- .NET port of Leron Gray's azbelt tool.☆26Updated last year
- Scripts to interact with Microsoft Graph APIs☆33Updated 2 months ago
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆71Updated last year
- Situational Awareness script to identify how and where to run implants☆43Updated last month
- Reflective shellcode runners using obfuscated Win32 APIs in C# and C++ (GetProcAddress & GetModuleHandle). For penetration testing.☆11Updated 9 months ago
- Threadless Injection Payload Toolkit☆11Updated last year
- ☆15Updated 11 months ago
- BOF for C2 framework☆39Updated 2 months ago
- ☆16Updated last month
- Identifies the bytes that Microsoft Defender / AMSI Consumer flags on.☆12Updated 8 months ago