D00MFist / PersistentJXALinks
Collection of macOS persistence methods and miscellaneous tools in JXA
☆283Updated 2 years ago
Alternatives and similar repositories for PersistentJXA
Users that are interested in PersistentJXA are comparing it to the libraries listed below
Sorting:
- A macOS enumeration tool inspired by harmjoy's Windows-based Seatbelt enumeration tool. Author: Cedric Owens☆338Updated 3 years ago
- macOS Offensive Tools☆271Updated 2 years ago
- macOS Initial Access Payload Generator☆315Updated last year
- Tracking of offensive macOS tooling, blogs, and related helpful information☆186Updated 10 months ago
- Objective-C library and console to interact with Heimdal APIs for macOS Kerberos☆152Updated 2 years ago
- macOS persistence tool☆226Updated 3 years ago
- Swift 5 macOS agent☆111Updated last year
- Proof of concept MacOS post exploitation tool written in Swift. Designed as a POC for blue teams to build macOS detections. Author: Cedri…☆121Updated 4 years ago
- Unit tests for blue teams to aid with building detections for some common macOS post exploitation methods.☆110Updated 2 years ago
- Interact with Chromium-based browsers' debug port to view open tabs, installed extensions, and cookies☆180Updated 2 years ago
- A CLI tool for leveraging IDP signing keys to impersonate users and groups☆19Updated 4 years ago
- JavaScript for Automation (JXA) macOS agent☆85Updated 4 months ago
- JavaScript for Automation (JXA) tool to do Active Directory enumeration.☆106Updated 3 years ago
- ☆99Updated 4 years ago
- JXA situational awareness helper by simply reading specific files on a filesystem☆80Updated 3 years ago
- ☆261Updated 2 years ago
- Presentation material presented by Outflank team members at public events.☆191Updated last week
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆258Updated 3 years ago
- Tools for discovery and abuse of COM hijacks☆330Updated 5 years ago
- Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.☆228Updated 6 years ago
- A sample of proof of concept scripts that run Calc.exe with full source code.☆96Updated last year
- Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely☆421Updated 3 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆113Updated 5 years ago
- Red Team C2 Infrastructure built in AWS using Ansible!☆230Updated 5 years ago
- Scripts (python3 and Swift) for macOS to recursively check /Applications and also check /usr/local/bin, /usr/bin, and /usr/sbin for binar…☆97Updated 3 years ago
- ☆479Updated 2 years ago
- ☆116Updated 6 months ago
- Payload designed for targeting Jamf enrolled devices.☆38Updated 2 years ago
- Neutering Sysmon via driver unload☆233Updated 3 years ago
- A proof of concept for a clickjacking attack on macOS.☆94Updated last year