DarkSpaceSecurity / SSH-StealerLinks
Smart keylogging capability to steal SSH Credentials including password & Private Key
☆145Updated 7 months ago
Alternatives and similar repositories for SSH-Stealer
Users that are interested in SSH-Stealer are comparing it to the libraries listed below
Sorting:
- Morpheus is an lsass stealer that extracts lsass.exe in RAM and exfiltrates it via forged and crypted NTP packets. For authorized testin…☆118Updated 4 months ago
 - Just a simple silly PoC demonstrating executable "exe" file that can be used like exe, dll or shellcode...☆170Updated last year
 - 🐍 Double Venom (DVenom) is a tool that provides an encryption wrapper and loader for your shellcode.☆158Updated 2 years ago
 - PoC exploit for the vulnerable WatchDog Anti-Malware driver (amsdk.sys) – weaponized to kill protected EDR/AV processes via BYOVD.☆172Updated last month
 - Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege☆223Updated last year
 - We found a way to DLL sideload with cleanmgr.exe☆95Updated 8 months ago
 - Chrome browser extension-based Command & Control☆183Updated 4 months ago
 - CVE-2025-33053 Proof Of Concept (PoC)☆60Updated 4 months ago
 - Enumerate active EDR's on the system☆139Updated last month
 - Fuegoshell is a powershell oneliner generator for Windows remote shell re-using TCP 445☆53Updated last year
 - Leverage WindowsApp createdump tool to obtain an lsass dump☆149Updated last year
 - Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options☆142Updated 7 months ago
 - Automated script for obfuscating, rebranding and renaming the Havoc C2 Framework to evade AV/EDR and C2 hunters.☆45Updated 2 months ago
 - TeamServer and Client of Exploration Command and Control Framework☆176Updated this week
 - NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆154Updated last year
 - ☆219Updated last year
 - Nameless C2 - A C2 with all its components written in Rust☆277Updated last year
 - Active Directory Authentication Library☆79Updated 3 weeks ago
 - PoC for using MS Windows printers for persistence / command and control via Internet Printing☆148Updated last year
 - A user-mode code and its rootkit that will Kill EDR Processes permanently by leveraging the power of Process Creation Blocking Kernel Cal…☆230Updated 4 months ago
 - Exploit AD CS misconfiguration allowing privilege escalation and persistence from any child domain to full forest compromise☆101Updated last year
 - Windows Persistence IT-Security☆106Updated 7 months ago
 - Automated .NET AppDomain hijack payload generation☆127Updated 8 months ago
 - ☆251Updated 3 months ago
 - Microsoft Telnet Client MS-TNAP Server-Side Authentication Token Exploit☆59Updated 5 months ago
 - Citrix Virtual Apps and Desktops (XEN) Unauthenticated RCE☆196Updated 11 months ago
 - Opsec tool for finding user sessions by analyzing event log files through RPC (MS-EVEN)☆75Updated last year
 - Port of Cobalt Strike's Process Inject Kit☆188Updated 11 months ago
 - SharePoint WebPart Injection Exploit Tool☆297Updated 3 months ago
 - ☆137Updated last year