1N73LL1G3NC3x / Nightmangle
☆143Updated last year
Related projects ⓘ
Alternatives and complementary repositories for Nightmangle
- comprehensive .NET tool designed to extract and display detailed information about Windows Defender exclusions and Attack Surface Reducti…☆190Updated 5 months ago
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆147Updated 6 months ago
- Continuous password spraying tool☆117Updated this week
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆143Updated 6 months ago
- A collection of Cobalt Strike Aggressor scripts.☆85Updated 2 years ago
- C2 Infrastructure Automation☆86Updated last week
- An interactive shell to spoof some LOLBins command line☆180Updated 9 months ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆162Updated last month
- ☆142Updated last week
- ☆132Updated 10 months ago
- Snaffler reimplementation in Python - https://github.com/SnaffCon/Snaffler☆88Updated 3 weeks ago
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆123Updated 3 months ago
- Python implementation of GhostPack's Seatbelt situational awareness tool☆202Updated last week
- A C2 framework built for my bachelors thesis☆53Updated 3 weeks ago
- This is way to load a shellcode, and obfuscate it, so it avoids scantime detection.☆50Updated 4 months ago
- Various one-off pentesting projects written in Nim. Updates happen on a whim.☆146Updated last week
- GregsBestFriend process injection code created from the White Knight Labs Offensive Development course☆174Updated last year
- ☆267Updated last year
- ☆126Updated 3 months ago
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆98Updated last year
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆94Updated 5 months ago
- Automated .NET AppDomain hijack payload generation☆113Updated 4 months ago
- PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges requir…☆136Updated 5 months ago
- Blocks EDR Telemetry by performing Person-in-the-Middle attack where network filtering is applied using iptables. The blocked destination…☆139Updated 4 months ago
- PoC for dumping and decrypting cookies in the latest version of Microsoft Teams☆127Updated last year
- ☆82Updated 2 years ago
- Decrypt GlobalProtect configuration and cookie files.☆137Updated 2 months ago
- Encodes a payload within a generated mock-CSS file☆55Updated last year