Research notes on Windows Component Object Model (COM) attack surface for offensive security and vulnerability research. Covers COM hijacking, elevation of privilege, DCOM lateral movement, and persistence primitives with exploitation steps. Notes were generated by Kimi K3 Swarm may contain inaccuracies.
☆162Jul 20, 2026Updated 2 months ago
Alternatives and similar repositories for Offensive-COM
Users that are interested in Offensive-COM are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- BingusLdr is a DLL loader built with Crystal Palace that uses a CET compatible stack spoofing technique.☆113Jul 14, 2026Updated 2 months ago
- ☆71Jul 12, 2026Updated 2 months ago
- A BOF designed to inspect processes memory and addresses☆41Apr 19, 2026Updated 5 months ago
- Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods…☆207Apr 27, 2026Updated 5 months ago
- open source implementation of the UDC2 spec used in Cobalt Strike☆60Jul 4, 2026Updated 3 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Object file loader implemented as a post-ex DLL for asynchronous BOF execution.☆28Jul 23, 2026Updated 2 months ago
- A credential extraction BOF for Veeam Backup and Replication and Veeam One☆80Sep 16, 2026Updated 3 weeks ago
- Async BOF to automatically extract or renew Kerberos TGTs on a target system.☆137Jul 23, 2026Updated 2 months ago
- Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal …☆101Jan 2, 2026Updated 9 months ago
- Another new coercion primitive with LPE - machine-account NTLM coercion from a non-admin user via Windows Store InstallService plugin res…☆88Jun 20, 2026Updated 3 months ago
- Atomic test units for BOF execution☆61Apr 26, 2026Updated 5 months ago
- Windows User-Mode Shellcode Development Framework (WUMSDF)☆159Jul 15, 2026Updated 2 months ago
- A Windows x64 offensive research framework that constructs fully synthetic call stacks☆73Jul 14, 2026Updated 2 months ago
- BOF POC of the DSCourier project / invoking WinGet via COM☆90Apr 23, 2026Updated 5 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automat…☆319Aug 31, 2026Updated last month
- Async port/ping scanner BOF. Supports IP/port ranges, CIDR notation and hostnames.☆17Jul 23, 2026Updated 2 months ago
- Enumerate Domain Users Without Authentication☆312Apr 22, 2025Updated last year
- Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.☆51Jul 23, 2026Updated 2 months ago
- A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique☆182Apr 14, 2026Updated 5 months ago
- Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.☆221Jan 6, 2026Updated 9 months ago
- BAADTokenBroker is a post-exploitation tool designed to interact with Microsoft Entra ID device-bound keys.☆82Apr 11, 2026Updated 5 months ago
- COM Windows Persistence Technique☆89Apr 27, 2026Updated 5 months ago
- Abusing the win32k.sys kernel callback mechanism for arbitrary code execution☆120Apr 10, 2026Updated 5 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Cobalt Strike BOF to obtain location data☆29Jul 4, 2026Updated 3 months ago
- Fritter is a heavily modified fork of TheWover and Odzhan's Donut shellcode generator.☆253Aug 4, 2026Updated 2 months ago
- Set of PoC to abuse Windows minifilters functionality☆94May 1, 2026Updated 5 months ago
- A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.☆144Jan 28, 2026Updated 8 months ago
- ☆33May 19, 2026Updated 4 months ago
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆192Jan 17, 2026Updated 8 months ago
- Shellcode injection using the Windows Debugging API☆180Jan 4, 2026Updated 9 months ago
- Activation Context Hijacking Evasion Tool☆310Jun 17, 2026Updated 3 months ago
- ☆193Oct 21, 2025Updated 11 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- DCOM in memory and fileless lateral movement techniques through .Net deserilization☆293Jun 22, 2026Updated 3 months ago
- A Crystal Palace shared library to resolve & perform syscalls☆66Oct 29, 2025Updated 11 months ago
- A small set of Beacon Object Files (BOFs) that I developed over the time with a Magic: The Gathering theme.☆22Jul 15, 2025Updated last year
- SOCKS5 proxy tool that uses Azure Storage services as a means of communication.☆365Updated this week
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆98Jul 3, 2025Updated last year
- A Payload Analysis Framework☆124Oct 9, 2025Updated last year
- Polymorphic PE rewriter for Windows x64 , rewrites binaries into semantically identical but byte-different variants☆200Jun 6, 2026Updated 4 months ago