Research notes on Windows Component Object Model (COM) attack surface for offensive security and vulnerability research. Covers COM hijacking, elevation of privilege, DCOM lateral movement, and persistence primitives with exploitation steps. Notes were generated by Kimi K3 Swarm may contain inaccuracies.
☆158Jul 20, 2026Updated last month
Alternatives and similar repositories for Offensive-COM
Users that are interested in Offensive-COM are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- BingusLdr is a DLL loader built with Crystal Palace that uses a CET compatible stack spoofing technique.☆114Jul 14, 2026Updated 2 months ago
- ☆68Jul 12, 2026Updated 2 months ago
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 5 months ago
- Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods…☆199Apr 27, 2026Updated 4 months ago
- open source implementation of the UDC2 spec used in Cobalt Strike☆59Jul 4, 2026Updated 2 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Object file loader implemented as a post-ex DLL for asynchronous BOF execution.☆28Jul 23, 2026Updated last month
- A credential extraction BOF for Veeam Backup and Replication and Veeam One☆80Updated this week
- Async BOF to automatically extract or renew Kerberos TGTs on a target system.☆135Jul 23, 2026Updated last month
- Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal …☆101Jan 2, 2026Updated 8 months ago
- Another new coercion primitive with LPE - machine-account NTLM coercion from a non-admin user via Windows Store InstallService plugin res…☆88Jun 20, 2026Updated 2 months ago
- Atomic test units for BOF execution☆60Apr 26, 2026Updated 4 months ago
- Windows User-Mode Shellcode Development Framework (WUMSDF)☆159Jul 15, 2026Updated 2 months ago
- A Windows x64 offensive research framework that constructs fully synthetic call stacks☆70Jul 14, 2026Updated 2 months ago
- BOF POC of the DSCourier project / invoking WinGet via COM☆90Apr 23, 2026Updated 4 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automat…☆317Aug 31, 2026Updated 2 weeks ago
- Async port/ping scanner BOF. Supports IP/port ranges, CIDR notation and hostnames.☆17Jul 23, 2026Updated last month
- Enumerate Domain Users Without Authentication☆311Apr 22, 2025Updated last year
- Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.☆51Jul 23, 2026Updated last month
- A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique☆181Apr 14, 2026Updated 5 months ago
- Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.☆222Jan 6, 2026Updated 8 months ago
- BAADTokenBroker is a post-exploitation tool designed to interact with Microsoft Entra ID device-bound keys.☆82Apr 11, 2026Updated 5 months ago
- COM Windows Persistence Technique☆89Apr 27, 2026Updated 4 months ago
- Abusing the win32k.sys kernel callback mechanism for arbitrary code execution☆119Apr 10, 2026Updated 5 months ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Cobalt Strike BOF to obtain location data☆29Jul 4, 2026Updated 2 months ago
- Fritter is a heavily modified fork of TheWover and Odzhan's Donut shellcode generator.☆253Aug 4, 2026Updated last month
- Set of PoC to abuse Windows minifilters functionality☆93May 1, 2026Updated 4 months ago
- A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.☆144Jan 28, 2026Updated 7 months ago
- ☆32May 19, 2026Updated 4 months ago
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆193Jan 17, 2026Updated 8 months ago
- Shellcode injection using the Windows Debugging API☆181Jan 4, 2026Updated 8 months ago
- Activation Context Hijacking Evasion Tool☆305Jun 17, 2026Updated 3 months ago
- ☆193Oct 21, 2025Updated 10 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- DCOM in memory and fileless lateral movement techniques through .Net deserilization☆293Jun 22, 2026Updated 2 months ago
- A Crystal Palace shared library to resolve & perform syscalls☆65Oct 29, 2025Updated 10 months ago
- A small set of Beacon Object Files (BOFs) that I developed over the time with a Magic: The Gathering theme.☆22Jul 15, 2025Updated last year
- SOCKS5 proxy tool that uses Azure Storage services as a means of communication.☆364Aug 15, 2026Updated last month
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆96Jul 3, 2025Updated last year
- A Payload Analysis Framework☆123Oct 9, 2025Updated 11 months ago
- Polymorphic PE rewriter for Windows x64 , rewrites binaries into semantically identical but byte-different variants☆200Jun 6, 2026Updated 3 months ago