0xthirteen / mtprocessLinks
Python script to leverage MSFT_MTProcess WMI class
☆39Updated 4 months ago
Alternatives and similar repositories for mtprocess
Users that are interested in mtprocess are comparing it to the libraries listed below
Sorting:
- ☆49Updated 7 months ago
- Bloodhound python Ingestor using ADWS☆27Updated 2 months ago
- Dump processes over WMI with MSFT_MTProcess☆81Updated 4 months ago
- Modified versions of the Cobalt Strike Process Injection Kit☆105Updated 2 years ago
- ☆49Updated 8 months ago
- SharpCoercer is a .NET 4.8 C# tool that leverages 16 different RPC-based coercion methods to force remote Windows hosts to authenticate t…☆53Updated 6 months ago
- ☆100Updated last year
- Copy metadata and digital signatures information from one Windows executable to another using Wine on a non-Windows platform☆19Updated last year
- ☆53Updated 4 months ago
- Tool to bypass LSA Protection (aka Protected Process Light)☆64Updated last year
- Beacon Object File (BOF) for Using the BadSuccessor Technique for Account Takeover☆85Updated 3 months ago
- ☆84Updated 2 years ago
- A C# port from Invoke-GhostTask☆119Updated 2 years ago
- ☆74Updated last year
- Cobalt Strike Beacon Object File (BOF) that uses CredUIPromptForWindowsCredentials API to invoke credential prompt☆23Updated 3 years ago
- Beacon Object File (BOF) for Windows Session Hijacking via IHxHelpPaneServer COM☆59Updated last month
- ☆51Updated 7 months ago
- TokenCert☆102Updated last year
- C++ tool and library for converting .bin files to shellcode in multiple output formats.☆33Updated 5 months ago
- In-memory sleep encryption and heap encryption for Go applications through a shellcode function.☆40Updated 2 years ago
- a BOF implementation of various registry persistence methods☆94Updated 2 months ago
- ☆26Updated last year
- An executable that simplifies adding the msds-AllowedToActOnBehalfOfOtherIdentity attribute for RBCD☆49Updated 10 months ago
- SAM Dumping in C#☆54Updated 2 months ago
- The ADSyncDump BOF is a port of Dirk-Jan Mollema's adconnectdump.py / ADSyncDecrypt into a Beacon Object File (BOF) with zero dependencie…☆166Updated 4 months ago
- Execute commands in other Sessions☆91Updated last year
- A portable C# utility for enumerating local and remote windows sessions☆55Updated 3 weeks ago
- A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.☆126Updated last month
- Aggressor script add-in for CobaltStrike to track file uploads☆49Updated 3 years ago
- ☆47Updated last month