GhostPack / Invoke-Evasion
PowerShell Obfuscation and Data Science
☆174Updated 3 years ago
Alternatives and similar repositories for Invoke-Evasion:
Users that are interested in Invoke-Evasion are comparing it to the libraries listed below
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆120Updated 3 years ago
- ☆122Updated last year
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆174Updated 2 years ago
- OPSEC safe Kerberoasting in C#☆191Updated 2 years ago
- ☆208Updated 3 years ago
- Some scripts to support with importing large datasets into BloodHound☆80Updated last year
- Modular C# framework to exfiltrate loot over secure and trusted channels.☆126Updated 3 years ago
- ☆98Updated 3 years ago
- ☆139Updated last year
- Koppeling x Metatwin x LazySign☆210Updated 3 years ago
- ☆165Updated 2 years ago
- pyCobaltHound is an Aggressor script extension for Cobalt Strike which aims to provide a deep integration between Cobalt Strike and Blood…☆138Updated last year
- ☆151Updated 2 months ago
- Slide decks and/or materials from conference presentations☆56Updated 2 years ago
- Fully modular persistence framework☆255Updated 2 years ago
- Bypassing AppLocker with C#☆140Updated 3 years ago
- The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.☆120Updated 4 years ago
- Password attacks and MFA validation against various endpoints in Azure and Office 365☆153Updated 2 years ago
- A collection of various and sundry code snippets that leverage .NET dynamic tradecraft☆142Updated 11 months ago
- Collection of tools to use with Azure Applications☆108Updated last year
- Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus☆229Updated 3 years ago
- This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR …☆257Updated 2 years ago
- Small utility to chunk up a large BloodHound JSON file into smaller files for importing.☆93Updated 2 years ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆91Updated last year
- ☆117Updated last month
- ☆159Updated 6 months ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆122Updated 3 years ago
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆256Updated last year
- Weaponising C# - Fundamentals Training Content☆70Updated 3 years ago
- InfoSec Notes☆56Updated last year