Arvanaghi / CheckPlease
Sandbox evasion modules written in PowerShell, Python, Go, Ruby, C, C#, Perl, and Rust.
☆912Updated 3 years ago
Alternatives and similar repositories for CheckPlease:
Users that are interested in CheckPlease are comparing it to the libraries listed below
- HTA encryption tool for RedTeams☆1,381Updated 2 years ago
- Framework for Making Environmental Keyed Payloads (NO LONGER SUPPORTED)☆743Updated 6 years ago
- Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS☆1,477Updated 6 years ago
- Malicious Macro Generator☆827Updated 5 years ago
- Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources☆1,494Updated last year
- PowerShell Remote Download Cradle Generator & Obfuscator☆826Updated 6 years ago
- The project is called Great SCT (Great Scott). Great SCT is an open source project to generate application white list bypasses. This tool…☆1,124Updated 4 years ago
- SafetyKatz is a combination of slightly modified version of @gentilkiwi's Mimikatz project and @subtee's .NET PE Loader☆1,249Updated 5 years ago
- Token Privilege Research☆801Updated 7 years ago
- Windows Event Log Killer☆1,770Updated last year
- CACTUSTORCH: Payload Generation for Adversary Simulations☆1,002Updated 6 years ago
- Process Injection☆754Updated 3 years ago
- ☆480Updated 7 years ago
- Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing…☆1,570Updated last year
- Run PowerShell command without invoking powershell.exe☆1,494Updated last year
- This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported …☆811Updated 7 months ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆1,464Updated last year
- Also known by Microsoft as Knifecoat☆1,123Updated 2 years ago
- Run PowerShell with rundll32. Bypass software restrictions.☆1,789Updated 3 years ago
- Collection of scripts and templates to generate Office documents embedded with the DDE, macro-less command execution technique.☆637Updated last year
- A tool to create a JScript file which loads a .NET v2 assembly from memory.☆1,264Updated 4 years ago
- PowerShell Pass The Hash Utils☆1,547Updated 6 years ago
- PowerShell Runspace Post Exploitation Toolkit☆1,533Updated 5 years ago
- A tool which creates a spoofed certificate of any online website and signs an Executable for AV Evasion. Works for both Windows and Linux☆1,344Updated 4 years ago
- LSASS memory dumper using direct system calls and API unhooking.☆1,509Updated 4 years ago
- Obfuscate powershell scripts by replacing Function names, Variables and Parameters.☆515Updated 2 years ago
- A memory scanning evasion technique☆855Updated 7 years ago
- Loader, dropper generator with multiple features for bypassing client-side and network-side countermeasures.☆948Updated 5 years ago
- Aggressor scripts for use with Cobalt Strike 3.0+☆819Updated 2 years ago
- Python / C# Unmanaged PowerShell based RAT☆775Updated last year