G0ldenGunSec / SCCM_SQL_CollectorLinks
PoC script to demonstrate collection of SCCM attack paths that can be viewed in BH with OpenGraph
☆24Updated 5 months ago
Alternatives and similar repositories for SCCM_SQL_Collector
Users that are interested in SCCM_SQL_Collector are comparing it to the libraries listed below
Sorting:
- Parser and reconciliation tooling for large Active Directory environments.☆33Updated 10 months ago
- ☆37Updated last year
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆95Updated 6 months ago
- Example of using Sleep to create better named pipes.☆41Updated 2 years ago
- Scripts to interact with Microsoft Graph APIs☆44Updated last year
- ☆51Updated 6 months ago
- Click Once + App Domain☆64Updated 2 years ago
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆34Updated 2 years ago
- RPC to WebClient startup☆53Updated 4 months ago
- Bunch of BOF files☆37Updated 6 months ago
- Dump Teams conversations☆19Updated 4 years ago
- A VSCode devcontainer for development of COFF files with batteries included.☆50Updated 2 years ago
- ☆26Updated 5 months ago
- Safe Harbor is a BOF that streamlines process reconnaissance for red team operations by identifying trusted, low-noise targets to maintai…☆71Updated 2 months ago
- Demo code JavaScript POC that tricks user into sending Windows hash to responder☆35Updated last month
- BOF for C2 framework☆44Updated last year
- ClickForClickOnce - Generate configurable clickonce payloads☆85Updated 3 months ago
- ☆38Updated 10 months ago
- rust port of pspy with support for process monitoring over dbus☆35Updated last week
- A proof of concept AMSI & ETW bypass using trampolines for hooking and modifying execution flow☆17Updated 6 months ago
- A python library to create BloodHound OpenGraphs☆43Updated last month
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated last year
- A BOF that suspends non-GUI threads for a target process or resumes them resulting in stealthy process silencing.☆57Updated 8 months ago
- Threadless Injection Payload Toolkit☆12Updated 2 years ago
- Command Augmentation support for BOFs and .NET assemblies across agents☆37Updated last week
- Add Shadow Credentials to a target object by editing their msDS-KeyCredentialLink attribute☆25Updated last year
- macOS dylib stager☆36Updated 11 months ago
- A dotnet executable to get an Entra token in an authenticated runtime☆15Updated last year
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- an Improoved Version of 0xNinjaCyclone´s EarlyCascade Code☆22Updated 10 months ago