Arvanaghi / CheckPlease
Sandbox evasion modules written in PowerShell, Python, Go, Ruby, C, C#, Perl, and Rust.
☆899Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for CheckPlease
- HTA encryption tool for RedTeams☆1,371Updated 2 years ago
- SafetyKatz is a combination of slightly modified version of @gentilkiwi's Mimikatz project and @subtee's .NET PE Loader☆1,224Updated 5 years ago
- Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS☆1,401Updated 6 years ago
- Also known by Microsoft as Knifecoat☆1,114Updated last year
- A tool to create a JScript file which loads a .NET v2 assembly from memory.☆1,240Updated 3 years ago
- Run PowerShell with rundll32. Bypass software restrictions.☆1,772Updated 3 years ago
- CACTUSTORCH: Payload Generation for Adversary Simulations☆995Updated 6 years ago
- Run PowerShell command without invoking powershell.exe☆1,474Updated last year
- Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing…☆1,532Updated last year
- Token Privilege Research☆781Updated 7 years ago
- The project is called Great SCT (Great Scott). Great SCT is an open source project to generate application white list bypasses. This tool…☆1,122Updated 3 years ago
- Framework for Making Environmental Keyed Payloads (NO LONGER SUPPORTED)☆737Updated 5 years ago
- Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources☆1,481Updated last year
- Process Injection☆752Updated 3 years ago
- Windows Event Log Killer☆1,755Updated last year
- A modular C2 framework☆398Updated this week
- Hide your Powershell script in plain sight. Bypass all Powershell security features☆1,105Updated 5 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆1,400Updated last year
- LSASS memory dumper using direct system calls and API unhooking.☆1,490Updated 3 years ago
- PowerShell Pass The Hash Utils☆1,480Updated 5 years ago
- SharpSploit is a .NET post-exploitation library written in C#☆1,749Updated 3 years ago
- PowerShell Remote Download Cradle Generator & Obfuscator☆822Updated 6 years ago
- A tool which creates a spoofed certificate of any online website and signs an Executable for AV Evasion. Works for both Windows and Linux☆1,309Updated 4 years ago
- TrevorC2 is a legitimate website (browsable) that tunnels client/server communications for covert command execution.☆1,225Updated 2 years ago
- Toolbox containing research notes & PoC code for weaponizing .NET's DLR☆513Updated 2 years ago
- Some useful scripts for CobaltStrike☆846Updated 3 years ago
- Aggressor scripts for use with Cobalt Strike 3.0+☆794Updated 2 years ago
- Obfuscate powershell scripts by replacing Function names, Variables and Parameters.☆510Updated last year
- A tool to elevate privilege with Windows Tokens☆1,022Updated last year
- ☆473Updated 7 years ago