DarkSpaceSecurity / SSH-StealerLinks
Smart keylogging capability to steal SSH Credentials including password & Private Key
☆141Updated 5 months ago
Alternatives and similar repositories for SSH-Stealer
Users that are interested in SSH-Stealer are comparing it to the libraries listed below
Sorting:
- Morpheus is an lsass stealer that extracts lsass.exe in RAM and exfiltrates it via forged and crypted NTP packets. For authorized testin…☆107Updated 3 months ago
- Just a simple silly PoC demonstrating executable "exe" file that can be used like exe, dll or shellcode...☆159Updated last year
- TeamServer and Client of Exploration Command and Control Framework☆156Updated 2 weeks ago
- PoC exploit for the vulnerable WatchDog Anti-Malware driver (amsdk.sys) – weaponized to kill protected EDR/AV processes via BYOVD.☆46Updated last week
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆153Updated last year
- Leverage WindowsApp createdump tool to obtain an lsass dump☆149Updated 11 months ago
- Enumerate active EDR's on the system☆107Updated last month
- Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options☆141Updated 5 months ago
- Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege☆225Updated last year
- Nameless C2 - A C2 with all its components written in Rust☆274Updated 11 months ago
- 🐍 Double Venom (DVenom) is a tool that provides an encryption wrapper and loader for your shellcode.☆158Updated 2 years ago
- A modification to fortra's CVE-2023-28252 exploit, compiled to exe☆54Updated last year
- ☆164Updated last year
- Chrome browser extension-based Command & Control☆171Updated 2 months ago
- Fuegoshell is a powershell oneliner generator for Windows remote shell re-using TCP 445☆54Updated last year
- ☆136Updated last year
- A user-mode code and its rootkit that will Kill EDR Processes permanently by leveraging the power of Process Creation Blocking Kernel Cal…☆222Updated 3 months ago
- Windows Persistence IT-Security☆105Updated 6 months ago
- We found a way to DLL sideload with cleanmgr.exe☆93Updated 6 months ago
- Two tools written in C that block network traffic for blacklisted EDR processes, using either Windows Defender Firewall (WDF) or Windows …☆235Updated last month
- Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.☆125Updated 11 months ago
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆148Updated last year
- Opsec tool for finding user sessions by analyzing event log files through RPC (MS-EVEN)☆72Updated last year
- Automated .NET AppDomain hijack payload generation☆127Updated 7 months ago
- BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)☆187Updated 7 months ago
- RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging☆198Updated 6 months ago
- AV bypass while you sip your Chai!☆224Updated last year
- This is the tool to dump the LSASS process on modern Windows 11☆103Updated last week
- Active Directory Authentication Library☆80Updated 3 weeks ago
- ☆240Updated 2 months ago