Gr1mmie / Coeus
ADSI based SA tool
☆16Updated 2 years ago
Alternatives and similar repositories for Coeus:
Users that are interested in Coeus are comparing it to the libraries listed below
- A PoC~ish of https://elastic.github.io/security-research/malware/2022/01/01.operation-bleeding-bear/article/☆30Updated 10 months ago
- ☆24Updated 2 years ago
- ☆29Updated 2 years ago
- Out-of-the-Box Tool to Obfuscate Excel XLS. Include Obfuscation & Hide for Cell Labels & BoundSheets☆47Updated 3 years ago
- A proof-of-concept created for academic/learning purposes, demonstrating both local and remote use of VSTO "Add-In's" maliciously☆31Updated last year
- LSASS enumeration like pypykatz written in C-Lang☆20Updated 3 years ago
- Automated (kinda) deployment of MalRDP infrastructure with Terraform & Ansible☆11Updated last year
- A Dynamic MSBuild task to help with minor obfuscation of C# Binaries to evade static signatures on each compilation☆32Updated 9 months ago
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆33Updated last year
- A little implant which SSH's back with a shell☆36Updated 2 years ago
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆39Updated last year
- Laz-y project compatible C# templates for shellcode injection.☆20Updated 2 years ago
- Use TpAllocWork, TpPostWork and TpReleaseWork to execute machine code☆22Updated last year
- Giga-byte Control Center (GCC) is a software package designed for improved user experience of Gigabyte hardware, often found in gaming an…☆31Updated last year
- A simple rpc2socks alternative in pure Go.☆26Updated 6 months ago
- A simple BOF implementation of klist using Windows API☆30Updated 2 years ago
- Remotely dump NT hashes through Windows Crash dumps☆26Updated 2 months ago
- .NET port of Leron Gray's azbelt tool.☆26Updated last year
- ☆35Updated 7 months ago
- ☆24Updated 2 years ago
- Extension functionality for the NightHawk operator client☆26Updated last year
- Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged p…☆49Updated 2 years ago