Arvanaghi / CheckPleaseLinks
Sandbox evasion modules written in PowerShell, Python, Go, Ruby, C, C#, Perl, and Rust.
☆924Updated 4 years ago
Alternatives and similar repositories for CheckPlease
Users that are interested in CheckPlease are comparing it to the libraries listed below
Sorting:
- HTA encryption tool for RedTeams☆1,398Updated 2 years ago
- Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS☆1,541Updated 6 years ago
- SafetyKatz is a combination of slightly modified version of @gentilkiwi's Mimikatz project and @subtee's .NET PE Loader☆1,271Updated 5 years ago
- Framework for Making Environmental Keyed Payloads (NO LONGER SUPPORTED)☆748Updated 6 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆1,517Updated last year
- CACTUSTORCH: Payload Generation for Adversary Simulations☆1,006Updated 6 years ago
- Token Privilege Research☆827Updated 7 years ago
- Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing…☆1,628Updated 2 years ago
- A tool to create a JScript file which loads a .NET v2 assembly from memory.☆1,287Updated 4 years ago
- Also known by Microsoft as Knifecoat☆1,136Updated 2 years ago
- Malicious Macro Generator☆829Updated 6 years ago
- ☆489Updated 7 years ago
- PowerShell Remote Download Cradle Generator & Obfuscator☆840Updated 7 years ago
- Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources☆1,508Updated last year
- The project is called Great SCT (Great Scott). Great SCT is an open source project to generate application white list bypasses. This tool…☆1,130Updated 4 years ago
- LSASS memory dumper using direct system calls and API unhooking.☆1,534Updated 4 years ago
- Process Injection☆762Updated 3 years ago
- Windows Event Log Killer☆1,789Updated last year
- PowerShell Runspace Post Exploitation Toolkit☆1,540Updated 5 years ago
- SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, Supe…☆1,268Updated 2 years ago
- Run PowerShell command without invoking powershell.exe☆1,510Updated 2 years ago
- A modular C2 framework☆476Updated 2 months ago
- New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.☆947Updated 7 years ago
- Run PowerShell with rundll32. Bypass software restrictions.☆1,801Updated 4 years ago
- Hide your Powershell script in plain sight. Bypass all Powershell security features☆1,188Updated 5 years ago
- Aggressor scripts for use with Cobalt Strike 3.0+☆854Updated 2 years ago
- Generates Malicious Macro and Execute Powershell or Shellcode via MSBuild Application Whitelisting Bypass.☆509Updated 5 years ago
- PowerShell Pass The Hash Utils☆1,605Updated 6 years ago
- Evade sysmon and windows event logging☆623Updated 5 years ago
- Generates malicious LNK file payloads for data exfiltration☆404Updated 7 years ago