Research notes on Windows Component Object Model (COM) attack surface for offensive security and vulnerability research. Covers COM hijacking, elevation of privilege, DCOM lateral movement, and persistence primitives with exploitation steps. Notes were generated by Kimi K3 Swarm may contain inaccuracies.
☆159Jul 20, 2026Updated last month
Alternatives and similar repositories for Offensive-COM
Users that are interested in Offensive-COM are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- BingusLdr is a DLL loader built with Crystal Palace that uses a CET compatible stack spoofing technique.☆112Jul 14, 2026Updated last month
- ☆64Jul 12, 2026Updated last month
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 4 months ago
- open source implementation of the UDC2 spec used in Cobalt Strike☆59Jul 4, 2026Updated last month
- Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods…☆200Apr 27, 2026Updated 4 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Object file loader implemented as a post-ex DLL for asynchronous BOF execution.☆29Jul 23, 2026Updated last month
- Async BOF to automatically extract or renew Kerberos TGTs on a target system.☆135Jul 23, 2026Updated last month
- Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal …☆102Jan 2, 2026Updated 7 months ago
- A credential extraction BOF for Veeam Backup and Replication and Veeam One☆79Jul 1, 2026Updated last month
- Another new coercion primitive with LPE - machine-account NTLM coercion from a non-admin user via Windows Store InstallService plugin res…☆88Jun 20, 2026Updated 2 months ago
- Atomic test units for BOF execution☆61Apr 26, 2026Updated 4 months ago
- Windows User-Mode Shellcode Development Framework (WUMSDF)☆158Jul 15, 2026Updated last month
- Async port/ping scanner BOF. Supports IP/port ranges, CIDR notation and hostnames.☆18Jul 23, 2026Updated last month
- C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automat…☆316Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A Windows x64 offensive research framework that constructs fully synthetic call stacks☆69Jul 14, 2026Updated last month
- BOF POC of the DSCourier project / invoking WinGet via COM☆90Apr 23, 2026Updated 4 months ago
- A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique☆183Apr 14, 2026Updated 4 months ago
- BAADTokenBroker is a post-exploitation tool designed to interact with Microsoft Entra ID device-bound keys.☆82Apr 11, 2026Updated 4 months ago
- COM Windows Persistence Technique☆90Apr 27, 2026Updated 4 months ago
- Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.☆50Jul 23, 2026Updated last month
- Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.☆224Jan 6, 2026Updated 7 months ago
- ☆32May 19, 2026Updated 3 months ago
- Set of PoC to abuse Windows minifilters functionality☆94May 1, 2026Updated 3 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Abusing the win32k.sys kernel callback mechanism for arbitrary code execution☆119Apr 10, 2026Updated 4 months ago
- Enumerate Domain Users Without Authentication☆308Apr 22, 2025Updated last year
- Fritter is a heavily modified fork of TheWover and Odzhan's Donut shellcode generator.☆251Aug 4, 2026Updated 3 weeks ago
- Cobalt Strike BOF to obtain location data☆30Jul 4, 2026Updated last month
- Shellcode injection using the Windows Debugging API☆182Jan 4, 2026Updated 7 months ago
- BOF to impersonate TrustedInstaller via DISM API trigger and thread impersonation☆136Mar 27, 2026Updated 5 months ago
- ☆194Oct 21, 2025Updated 10 months ago
- Activation Context Hijacking Evasion Tool☆306Jun 17, 2026Updated 2 months ago
- DCOM in memory and fileless lateral movement techniques through .Net deserilization☆290Jun 22, 2026Updated 2 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.☆143Jan 28, 2026Updated 7 months ago
- An aggressor script that tracks operational changes made during a red team engagement. Gives you a full audit trail of what was changed a…☆27May 21, 2026Updated 3 months ago
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆195Jan 17, 2026Updated 7 months ago
- A Crystal Palace shared library to resolve & perform syscalls☆66Oct 29, 2025Updated 10 months ago
- A small set of Beacon Object Files (BOFs) that I developed over the time with a Magic: The Gathering theme.☆21Jul 15, 2025Updated last year
- A Payload Analysis Framework☆123Oct 9, 2025Updated 10 months ago
- SOCKS5 proxy tool that uses Azure Storage services as a means of communication.☆365Aug 15, 2026Updated 2 weeks ago