WSuspicious - A tool to abuse insecure WSUS connections for privilege escalations
☆378Oct 30, 2020Updated 5 years ago
Alternatives and similar repositories for WSuspicious
Users that are interested in WSuspicious are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.☆358Jul 2, 2026Updated last month
- .Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py☆614Feb 16, 2023Updated 3 years ago
- Porting of mimikatz sekurlsa::logonpasswords, sekurlsa::ekeys and lsadump::dcsync commands☆1,021Nov 7, 2021Updated 4 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆871Dec 2, 2023Updated 2 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆1,657Jul 10, 2023Updated 3 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Fork of SafetyKatz that dynamically fetches the latest pre-compiled release of Mimikatz directly from gentilkiwi GitHub repo, runtime pat…☆887Mar 29, 2021Updated 5 years ago
- A method of bypassing EDR's active projection DLL's by preventing entry point exection☆1,171Mar 31, 2021Updated 5 years ago
- .NET Project for Attacking vCenter☆559Nov 11, 2021Updated 4 years ago
- Local Service to SYSTEM privilege escalation from Windows 7 to Windows 10 / Server 2019☆1,839Sep 4, 2024Updated last year
- Whisker is a C# tool for taking over Active Directory user and computer accounts by manipulating their msDS-KeyCredentialLink attribute, …☆955Nov 11, 2024Updated last year
- OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at s…☆542Sep 18, 2022Updated 3 years ago
- Another Windows Local Privilege Escalation from Service Account to System☆1,178Jan 9, 2021Updated 5 years ago
- ☆133Dec 19, 2020Updated 5 years ago
- Windows Privilege Escalation from User to Domain Admin.☆1,469Dec 18, 2022Updated 3 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- ☆671Nov 17, 2021Updated 4 years ago
- SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GP…☆1,353Dec 15, 2020Updated 5 years ago
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆385Sep 20, 2025Updated 11 months ago
- A C# utility for interacting with SCCM☆703Mar 30, 2026Updated 5 months ago
- Tool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF)☆322Nov 9, 2021Updated 4 years ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆190Jun 22, 2022Updated 4 years ago
- Exploit for the RpcEptMapper registry key permissions vulnerability (Windows 7 / 2088R2 / 8 / 2012)☆427Apr 22, 2021Updated 5 years ago
- Another LSASS dumping tool that uses a dynamically compiled LSA plugin to grab an lsass handle and API hooking for capturing the dump in…☆272Mar 18, 2021Updated 5 years ago
- .NET Project for performing Authenticated Remote Execution☆410Feb 8, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Tool to bypass LSA Protection (aka Protected Process Light)☆998Dec 4, 2022Updated 3 years ago
- Miscellaneous Tools☆269Oct 29, 2020Updated 5 years ago
- Exploit for EfsPotato(MS-EFSR EfsRpcOpenFileRaw with SeImpersonatePrivilege local privalege escalation vulnerability).☆830Dec 14, 2023Updated 2 years ago
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆980Jul 26, 2021Updated 5 years ago
- C# version of MDSec's ParallelSyscalls☆143Jan 9, 2022Updated 4 years ago
- The idea is to collect all the C# projects that are Sharp{Word} that can be used in Cobalt Strike as execute assembly command.☆484May 24, 2022Updated 4 years ago
- NTLM relaying for Windows made easy☆586Apr 25, 2023Updated 3 years ago
- .NET IPv4/IPv6 machine-in-the-middle tool for penetration testers☆815Aug 28, 2022Updated 4 years ago
- A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts and relaying to the certifica…☆878Mar 20, 2023Updated 3 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS head…☆597Jul 26, 2021Updated 5 years ago
- A lightweight tool to quickly extract valuable information from the Active Directory environment for both attacking and defending.☆638Oct 18, 2025Updated 10 months ago
- Windows Local Privilege Escalation from Service Account to System☆968Feb 23, 2020Updated 6 years ago
- ☆188Jan 5, 2021Updated 5 years ago
- Excel Macro Document Reader/Writer for Red Teamers & Analysts☆522May 19, 2026Updated 3 months ago
- LSASS memory dumper using direct system calls and API unhooking.☆1,596Jan 5, 2021Updated 5 years ago
- ☆428Apr 28, 2021Updated 5 years ago