Cn33liz / TpmInitUACBypass
Bypassing User Account Control (UAC) using TpmInit.exe
☆128Updated 8 years ago
Alternatives and similar repositories for TpmInitUACBypass:
Users that are interested in TpmInitUACBypass are comparing it to the libraries listed below
- some pocs for antivirus evasion☆131Updated last year
- VBS Reversed TCP Meterpreter Stager☆87Updated 7 years ago
- PoC dlls for Task Scheduler COM Hijacking☆94Updated 8 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆136Updated 7 years ago
- Randomly changes Win32/64 PE Files for 'safer' uploading to malware and sandbox sites.☆131Updated 11 years ago
- Pazuzu: Reflective DLL to run binaries from memory☆215Updated 4 years ago
- Reflective Polymorphism☆104Updated 6 years ago
- NCC Group's analysis and exploitation of CVE-2017-8759 along with further refinements☆96Updated 7 years ago
- JavaScript Reversed TCP Meterpreter Stager☆137Updated 7 years ago
- VBA Reversed TCP Meterpreter Stager☆62Updated 7 years ago
- An exploit for CVE-2016-7255 on Windows 7/8/8.1/10(pre-anniversary) 64 bit☆81Updated 8 years ago
- Open Source Office Malware Generation & Polymorphic Engine for Red Teams and QA testing☆95Updated 8 years ago
- MS17-012 - COM Session Moniker EoP Exploit running within MSBuild.exe☆59Updated 8 years ago
- A "tiny" meterpreter stager☆128Updated 5 years ago
- Simple tool to automate adding shellcode to PE files☆49Updated 7 years ago
- Fileless Ransomware Example☆36Updated 7 years ago
- OpenSource cross-platform python security toolkit (remote shell)☆45Updated 2 years ago
- Bypassing User Account Control (UAC) using TpmInit.exe☆42Updated 8 years ago
- POC Highlighting Obfuscation Techniques used by FIN threat actors based on cmd.exe's replace functionality and cmd.exe/powershell.exe's s…☆104Updated 7 years ago
- DropboxC2C is a post-exploitation agent which uses Dropbox Infrastructure for command and control operations.☆150Updated 6 years ago
- Slides and reference material from Evading Autoruns presentation at DerbyCon 7 (September 2017)☆103Updated 4 years ago
- Yet another AV evasion tool☆119Updated 3 years ago
- ☆229Updated 6 years ago
- public bugs/proof of concepts☆48Updated 4 years ago
- HackSys Extreme Vulnerable Driver - Windows 10 x64 StackOverflow Exploit with SMEP Bypass☆62Updated 7 years ago
- An attempt at Process Doppelgänging☆182Updated 7 years ago
- Uses Invoke-Shellcode to execute a payload and persist on the system.☆113Updated 8 years ago
- foolav successor - loads DLL, executable or shellcode into memory and runs it effectively bypassing AV☆113Updated 3 years ago
- Powershell Persistence Locator☆66Updated 8 years ago
- Meterpreter_Payload_Detection.exe tool for detecting Meterpreter in memory like IPS-IDS and Forensics tool☆162Updated last year