D00MFist / PersistentJXALinks
Collection of macOS persistence methods and miscellaneous tools in JXA
☆282Updated 2 years ago
Alternatives and similar repositories for PersistentJXA
Users that are interested in PersistentJXA are comparing it to the libraries listed below
Sorting:
- macOS Offensive Tools☆270Updated last year
- macOS Initial Access Payload Generator☆316Updated last year
- A macOS enumeration tool inspired by harmjoy's Windows-based Seatbelt enumeration tool. Author: Cedric Owens☆335Updated 3 years ago
- Tracking of offensive macOS tooling, blogs, and related helpful information☆184Updated 10 months ago
- Objective-C library and console to interact with Heimdal APIs for macOS Kerberos☆152Updated 2 years ago
- macOS persistence tool☆225Updated 3 years ago
- Unit tests for blue teams to aid with building detections for some common macOS post exploitation methods.☆109Updated 2 years ago
- Proof of concept MacOS post exploitation tool written in Swift. Designed as a POC for blue teams to build macOS detections. Author: Cedri…☆121Updated 4 years ago
- Swift 5 macOS agent☆109Updated last year
- JavaScript for Automation (JXA) macOS agent☆84Updated 3 months ago
- JavaScript for Automation (JXA) tool to do Active Directory enumeration.☆105Updated 3 years ago
- Interact with Chromium-based browsers' debug port to view open tabs, installed extensions, and cookies☆179Updated 2 years ago
- ☆99Updated 4 years ago
- JXA situational awareness helper by simply reading specific files on a filesystem☆80Updated 3 years ago
- A CLI tool for leveraging IDP signing keys to impersonate users and groups☆19Updated 4 years ago
- ☆261Updated 2 years ago
- Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.☆228Updated 6 years ago
- Scripts (python3 and Swift) for macOS to recursively check /Applications and also check /usr/local/bin, /usr/bin, and /usr/sbin for binar…☆97Updated 3 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆258Updated 3 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆113Updated 5 years ago
- A sample of proof of concept scripts that run Calc.exe with full source code.☆96Updated last year
- A repo full of example gscripts☆100Updated 6 years ago
- ☆479Updated 2 years ago
- Tools for discovery and abuse of COM hijacks☆328Updated 5 years ago
- ☆118Updated 5 months ago
- Red Team C2 Infrastructure built in AWS using Ansible!☆230Updated 4 years ago
- Presentation material presented by Outflank team members at public events.☆190Updated 9 months ago
- JXA and swift code that can perform some macOS situational awareness without generating TCC prompts.☆40Updated 3 years ago
- Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely☆421Updated 3 years ago
- Neutering Sysmon via driver unload☆232Updated 2 years ago