DarkSpaceSecurity / SSH-StealerLinks
Smart keylogging capability to steal SSH Credentials including password & Private Key
☆138Updated 5 months ago
Alternatives and similar repositories for SSH-Stealer
Users that are interested in SSH-Stealer are comparing it to the libraries listed below
Sorting:
- Morpheus is an lsass stealer that extracts lsass.exe in RAM and exfiltrates it via forged and crypted NTP packets. For authorized testin…☆106Updated 2 months ago
- Enumerate active EDR's on the system☆97Updated last week
- Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options☆140Updated 5 months ago
- Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege☆225Updated last year
- 🐍 Double Venom (DVenom) is a tool that provides an encryption wrapper and loader for your shellcode.☆158Updated last year
- Just a simple silly PoC demonstrating executable "exe" file that can be used like exe, dll or shellcode...☆158Updated 11 months ago
- Leverage WindowsApp createdump tool to obtain an lsass dump☆150Updated 11 months ago
- Fuegoshell is a powershell oneliner generator for Windows remote shell re-using TCP 445☆54Updated last year
- A user-mode code and its rootkit that will Kill EDR Processes permanently by leveraging the power of Process Creation Blocking Kernel Cal…☆217Updated 2 months ago
- TeamServer and Client of Exploration Command and Control Framework☆153Updated 3 weeks ago
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆153Updated last year
- A Mythic agent for Windows written in C☆133Updated last month
- Convert your shellcode into an ASCII string☆113Updated 2 months ago
- Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.☆295Updated this week
- Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.☆122Updated 10 months ago
- Active Directory Authentication Library☆79Updated last week
- CVE-2025-0282 is a critical vulnerability found in Ivanti Connect Secure, allowing Remote Command Execution (RCE) through a buffer overfl…☆48Updated 7 months ago
- ☆236Updated last month
- We found a way to DLL sideload with cleanmgr.exe☆92Updated 6 months ago
- A modification to fortra's CVE-2023-28252 exploit, compiled to exe☆54Updated last year
- Abuse leaked token handles.☆132Updated last year
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆148Updated last year
- Nameless C2 - A C2 with all its components written in Rust☆273Updated 11 months ago
- Chrome browser extension-based Command & Control☆166Updated last month
- Automated .NET AppDomain hijack payload generation☆127Updated 6 months ago
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆246Updated last year
- Citrix Virtual Apps and Desktops (XEN) Unauthenticated RCE☆195Updated 9 months ago
- AV bypass while you sip your Chai!☆224Updated last year
- Windows Persistence IT-Security☆103Updated 5 months ago
- Exploit AD CS misconfiguration allowing privilege escalation and persistence from any child domain to full forest compromise☆99Updated last year