GhostPack / Invoke-EvasionLinks
PowerShell Obfuscation and Data Science
☆174Updated 3 years ago
Alternatives and similar repositories for Invoke-Evasion
Users that are interested in Invoke-Evasion are comparing it to the libraries listed below
Sorting:
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆120Updated 3 years ago
- Koppeling x Metatwin x LazySign☆213Updated 3 years ago
- OPSEC safe Kerberoasting in C#☆192Updated 3 years ago
- ☆140Updated last year
- Bypassing AppLocker with C#☆141Updated 4 years ago
- ☆123Updated last year
- ☆164Updated 2 years ago
- Cortex XDR Config Extractor☆132Updated 2 years ago
- Modular C# framework to exfiltrate loot over secure and trusted channels.☆129Updated 3 years ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆123Updated 3 years ago
- SpecterOps Presentations☆203Updated 2 weeks ago
- ☆207Updated 3 years ago
- Password attacks and MFA validation against various endpoints in Azure and Office 365☆151Updated 2 years ago
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares☆175Updated 2 years ago
- Some scripts to support with importing large datasets into BloodHound☆80Updated last year
- Collection of tools to use with Azure Applications☆109Updated last year
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆95Updated last year
- ☆161Updated 8 months ago
- pyCobaltHound is an Aggressor script extension for Cobalt Strike which aims to provide a deep integration between Cobalt Strike and Blood…☆137Updated 2 years ago
- Weaponising C# - Fundamentals Training Content☆70Updated 4 years ago
- ☆151Updated 5 months ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆176Updated 2 years ago
- Start new PowerShell without etw and amsi in pure nim☆156Updated 3 years ago
- Fully modular persistence framework☆256Updated 2 years ago
- WNF Code Execution Library Using C#☆111Updated 5 years ago
- ☆221Updated last year
- Identifies the bytes that Microsoft Defender flags on.☆89Updated 3 years ago
- Detect whether a service is installed (blindly) and/or running (if exposing named pipes) on a remote machine without using local admin pr…☆232Updated last year
- ☆249Updated last year
- Hookers are cooler than patches.☆169Updated 3 years ago