AgeloVito / self_delete_bofLinks
BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the current process.
☆76Updated last year
Alternatives and similar repositories for self_delete_bof
Users that are interested in self_delete_bof are comparing it to the libraries listed below
Sorting:
- Cobalt Strike BOF that Add a user to localgroup by samr☆130Updated 2 years ago
- ☆34Updated 4 months ago
- ☆49Updated 2 years ago
- 在cobaltstrike中使用的bof工具集,收集整理验证好用的bof。☆14Updated 3 years ago
- Cobalt Strike BOF that Add an admin user☆77Updated 2 years ago
- command execute without 445 port☆52Updated 3 years ago
- 通过websocket在IIS8(Windows Server 2012)以上实现socks5代理☆89Updated last year
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆44Updated 2 years ago
- If you only have hash, you can still operate exchange☆75Updated 3 years ago
- ASPX ShellCode Loader☆50Updated last year
- Zerologon自动化脚本☆90Updated last year
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user; Adding the sam_the_admin_maq when MachineAccoun…☆22Updated last year
- ☆46Updated 4 years ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆88Updated 2 years ago
- Lsass memory dump.☆53Updated last year
- Shellcode Reductio Entropy Tools☆70Updated last year
- 利用EFSRPC协议批量探测出网☆66Updated last year
- impacket编程手册☆105Updated last year
- Hidedump:a lsassdump tools that may bypass EDR☆51Updated last year
- mssqlproxy python3.5+ 并修复bug☆63Updated 2 years ago
- AddDefenderExclusions Beacon Object File☆39Updated 2 years ago
- C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can…☆16Updated 3 years ago
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆34Updated 2 years ago
- ad vulnerability scanner☆71Updated last year
- RPC 调用添加ssp扩展dump lsass☆19Updated 2 years ago
- A method of bypassing EDR's active projection DLL's by preventing entry point exection☆23Updated 4 years ago
- 密码收集☆58Updated 3 years ago
- ☆35Updated 2 years ago
- Get password/cookie/history from browser and use devtools protocol to bypass edr monitoring☆62Updated 2 months ago
- Zerologon exploit with restore DC password automatically☆138Updated last year