Darkrain2009 / RedExtLinks
Chrome browser extension-based Command & Control
☆230Updated 7 months ago
Alternatives and similar repositories for RedExt
Users that are interested in RedExt are comparing it to the libraries listed below
Sorting:
- Morpheus is an lsass stealer that extracts lsass.exe in RAM and exfiltrates it via forged and crypted NTP packets. For authorized testin…☆121Updated 7 months ago
- Just another C2 Redirector using CloudFlare. Support multiple C2 and multiple domains. Support for websocket listener.☆184Updated 10 months ago
- Havoc C2 profile generator☆101Updated 6 months ago
- Extract SAM and SYSTEM using Volume Shadow Copy (VSS) API. With multiple exfiltration options and XOR obfuscation☆331Updated 3 weeks ago
- Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options☆155Updated 10 months ago
- Evasive Golang Loader☆137Updated last year
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆155Updated last year
- TeamServer and Client of Exploration Command and Control Framework☆177Updated last month
- Collection of BOFs created for red team/adversary engagements. Created to be small and interchangeable, for quick recon or eventing.☆230Updated 2 weeks ago
- A Mythic agent for Windows written in C☆153Updated last week
- Leverage WindowsApp createdump tool to obtain an lsass dump☆153Updated last year
- ☆198Updated 10 months ago
- Leak of any user's NetNTLM hash. Fixed in KB5040434☆259Updated last year
- C or BOF file to extract WebKit master key to decrypt user cookie☆207Updated last year
- Abuse leaked token handles.☆134Updated 2 years ago
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆149Updated last year
- Useful Cobalt Strike Beacon Object Files (BOFs) used during red teaming and penetration testing engagements.☆138Updated 3 years ago
- Port of Cobalt Strike's Process Inject Kit☆190Updated last year
- My implementation of the GIUDA project in C++☆188Updated 2 years ago
- AV bypass while you sip your Chai!☆226Updated last year
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆194Updated last year
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆213Updated last year
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆249Updated last year
- ☆241Updated last year
- PoC exploit for the vulnerable WatchDog Anti-Malware driver (amsdk.sys) – weaponized to kill protected EDR/AV processes via BYOVD.☆180Updated 4 months ago
- Active Directory Authentication Library☆87Updated 3 months ago
- Agent for AdaptixC2 with focus in evasion, capability and malleable.☆140Updated this week
- Robust Cobalt Strike shellcode loader with multiple advanced evasion features☆199Updated 9 months ago
- Execute shellcode files with rundll32☆214Updated 2 years ago
- ☆169Updated last year