AgeloVito / self_delete_bofLinks
BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the current process.
☆77Updated 2 years ago
Alternatives and similar repositories for self_delete_bof
Users that are interested in self_delete_bof are comparing it to the libraries listed below
Sorting:
- Cobalt Strike BOF that Add a user to localgroup by samr☆131Updated 2 years ago
 - command execute without 445 port☆52Updated 3 years ago
 - Cobalt Strike BOF that Add an admin user☆78Updated 3 years ago
 - ☆34Updated 8 months ago
 - Delete file regardless of whether the handle is used via SetFileInformationByHandle☆55Updated 2 years ago
 - ASPX ShellCode Loader☆53Updated last year
 - ☆49Updated 2 years ago
 - Execute Remote Assembly with args passing and with AMSI and ETW patching .☆34Updated 3 months ago
 - ☆31Updated 2 years ago
 - 在cobaltstrike中使用的bof工具集,收集整理验证好用的bof。☆15Updated 4 years ago
 - 通过websocket在IIS8(Windows Server 2012)以上实现socks5代理☆89Updated last year
 - CrackMapExec extension module/protocol support☆42Updated 2 years ago
 - Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user; Adding the sam_the_admin_maq when MachineAccoun…☆22Updated last year
 - MSSQL CLR for pentest.☆55Updated 2 years ago
 - ☆24Updated 6 months ago
 - AddDefenderExclusions Beacon Object File☆40Updated 2 years ago
 - more conveniently Visual-Studio-BOF-template☆71Updated 2 years ago
 - Shellcode Reductio Entropy Tools☆73Updated 2 years ago
 - Alternative Shellcode Execution Via Callbacks Rewrite In C#☆89Updated 2 years ago
 - If you only have hash, you can still operate exchange☆77Updated 4 years ago
 - RPC 调用添加ssp扩展dump lsass☆20Updated 3 years ago
 - A method of bypassing EDR's active projection DLL's by preventing entry point exection☆24Updated 4 years ago
 - 利用EFSRPC协议批量探测出网☆65Updated 2 years ago
 - Hidedump:a lsassdump tools that may bypass EDR☆50Updated last year
 - ☆46Updated 4 years ago
 - 在权限足够的情况下弹出system权限的cmd命令行,包含exe和dll两种文件类型,可用于一些可能存在本地提权漏洞的测试。☆34Updated 3 years ago
 - resource-based constrained delegation RBCD☆45Updated 3 years ago
 - Loader Pre-Technology, Main thread hijacking without using API, get ntdll and kernel32 handle without peb. 加载器前置技术,不使用API进行主线程劫持,不使用PEB…☆82Updated 3 months ago
 - impacket编程手册☆105Updated 2 years ago
 - Beacon Object File implementation of pwn1sher's KillDefender☆67Updated 3 years ago