1N73LL1G3NC3x / Nightmangle
☆150Updated last year
Alternatives and similar repositories for Nightmangle:
Users that are interested in Nightmangle are comparing it to the libraries listed below
- comprehensive .NET tool designed to extract and display detailed information about Windows Defender exclusions and Attack Surface Reducti…☆193Updated 7 months ago
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆149Updated 8 months ago
- PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges requir…☆140Updated 7 months ago
- Automated .NET AppDomain hijack payload generation☆119Updated last month
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆143Updated 8 months ago
- ☆161Updated 2 months ago
- An interactive shell to spoof some LOLBins command line☆182Updated last year
- Continuous password spraying tool☆122Updated last month
- ☆131Updated this week
- ACEshark is a utility designed for rapid extraction and analysis of Windows service configurations and Access Control Entries, eliminatin…☆81Updated 2 weeks ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆179Updated 3 months ago
- Stage 0☆148Updated last month
- Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement☆154Updated last month
- Snaffler reimplementation in Python - https://github.com/SnaffCon/Snaffler☆93Updated 3 months ago
- ☆269Updated last year
- A Rust implementation of Internal-Monologue — retrieving NetNTLM hashes without touching LSASS, leveraging SSPI for NTLM negotiation and …☆153Updated last month
- Inject RDPThief into memory with PowerShell.☆58Updated last week
- ☆74Updated 2 weeks ago
- Opsec tool for finding user sessions by analyzing event log files through RPC (MS-EVEN)☆62Updated 7 months ago
- C2 Infrastructure Automation☆92Updated 2 months ago
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆101Updated last week
- Blocks EDR Telemetry by performing Person-in-the-Middle attack where network filtering is applied using iptables. The blocked destination…☆141Updated 6 months ago
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆102Updated last year
- Amazing whoami alternatives☆138Updated 10 months ago
- A C2 framework built for my bachelors thesis☆55Updated 2 months ago
- ☆284Updated last month
- GregsBestFriend process injection code created from the White Knight Labs Offensive Development course☆180Updated last year
- NukeAMSI is a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments.☆136Updated 2 weeks ago
- "AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS☆215Updated 3 months ago
- Documents Exfiltration project for fun and educational purposes☆145Updated last year