Collection of VBA macro published in our twitter / blog
☆157Sep 5, 2022Updated 4 years ago
Alternatives and similar repositories for VBA-macro-experiments
Users that are interested in VBA-macro-experiments are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This repository is a collection of my malicious VBA projects.☆116Feb 13, 2021Updated 5 years ago
- Macro-Enabled Excel File Generator (.xlsm) using the EPPlus Library.☆151Sep 7, 2020Updated 6 years ago
- D/Invoke port of UrbanBishop☆108Jul 19, 2020Updated 6 years ago
- credential dump using foreshaw technique using SeTrustedCredmanAccessPrivilege☆125May 22, 2021Updated 5 years ago
- ☆40Jul 29, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Port of Invoke-Excel4DCOM☆100Oct 12, 2019Updated 6 years ago
- Tool for interacting with outlook interop during red team engagements☆145Jun 29, 2021Updated 5 years ago
- Using DInvoke to patch AMSI.dll in order to bypass AMSI detections triggered when loading .NET tradecraft via Assembly.Load().☆215Mar 5, 2020Updated 6 years ago
- Another LSASS dumping tool that uses a dynamically compiled LSA plugin to grab an lsass handle and API hooking for capturing the dump in…☆271Mar 18, 2021Updated 5 years ago
- Executes position independent shellcode from an encrypted zip☆303Dec 22, 2020Updated 5 years ago
- OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team…☆821Jun 5, 2026Updated 3 months ago
- Implementation of b4rtiks's SharpMiniDump using NTFS transactions to avoid writting the minidump to disk and exfiltrating it via HTTPS us…☆67Nov 14, 2020Updated 5 years ago
- Source for tasks I have used with Covenant☆120Mar 21, 2021Updated 5 years ago
- ☆207Feb 24, 2022Updated 4 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Excel Macro Document Reader/Writer for Red Teamers & Analysts☆523May 19, 2026Updated 3 months ago
- ☆188Jan 5, 2021Updated 5 years ago
- MSBuild without MSbuild.exe☆135Dec 21, 2020Updated 5 years ago
- Just a PoC to turn xlsx (regular Excel files) into xlsm (Excel file with macro) and slipping inside a macro (vbaProject.bin)☆143Sep 4, 2021Updated 5 years ago
- ☆133Dec 19, 2020Updated 5 years ago
- ☆171Dec 8, 2022Updated 3 years ago
- Load .net assemblies from memory while having them appear to be loaded from an on-disk location.☆173May 5, 2021Updated 5 years ago
- C# port of the Get-AppLockerPolicy PS cmdlet☆97Dec 8, 2022Updated 3 years ago
- ☆143May 4, 2022Updated 4 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Bring your own print driver privilege escalation tool☆264Aug 5, 2021Updated 5 years ago
- Managed code hooking template.☆108Feb 15, 2021Updated 5 years ago
- Companion PoC for the "Adventures in Dynamic Evasion" blog post☆127May 25, 2021Updated 5 years ago
- KaynLdr is a Reflective Loader written in C/ASM☆550Dec 3, 2023Updated 2 years ago
- ☆180Feb 3, 2021Updated 5 years ago
- ☆668Nov 17, 2021Updated 4 years ago
- Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS head…☆597Jul 26, 2021Updated 5 years ago
- Evading WinDefender ATP credential-theft☆254Dec 2, 2019Updated 6 years ago
- GhostBuild is a collection of simple MSBuild launchers for various GhostPack/.NET projects☆252Sep 26, 2020Updated 5 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- C# Executable with embedded Python that can be used reflectively to run python code on systems without Python installed☆242Aug 12, 2020Updated 6 years ago
- .NET Project for Attacking vCenter☆558Nov 11, 2021Updated 4 years ago
- LiquidSnake is a tool that allows operators to perform fileless lateral movement using WMI Event Subscriptions and GadgetToJScript☆350Sep 1, 2021Updated 5 years ago
- ☆78Jun 17, 2025Updated last year
- Project to check which Nt/Zw functions your local EDR is hooking☆200Mar 21, 2021Updated 5 years ago
- Proof of concept Beacon Object File (BOF) that uses static x64 syscalls to perform a complete in memory dump of a process and send that b…☆245Jul 14, 2021Updated 5 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆255Dec 2, 2021Updated 4 years ago