Hagrid29 / CertifyKitLinks
Active Directory certificate abuse
☆39Updated 2 years ago
Alternatives and similar repositories for CertifyKit
Users that are interested in CertifyKit are comparing it to the libraries listed below
Sorting:
- Modified versions of the Cobalt Strike Process Injection Kit☆95Updated last year
- CVE-2024-40711-exp☆42Updated 8 months ago
- C# implementation of Get-AADIntSyncCredentials from AADInternals, which extracts Azure AD Connect credentials to AD and Azure AD from AAD…☆40Updated last year
- ☆71Updated last year
- Secretsdump C# version only supporting local (live) operation☆49Updated 2 months ago
- ☆88Updated 2 years ago
- Parses Cobalt Strike malleable C2 profiles.☆57Updated last week
- ProcExp Driver (Ab)use☆22Updated 2 years ago
- Read the contents of MS Word Documents using Cobalt Strike's Execute-Assembly☆117Updated 8 months ago
- ☆126Updated last year
- Tool to bypass LSA Protection (aka Protected Process Light)☆54Updated 5 months ago
- Cobalt Strike BOF for quser.exe implementation using Windows API☆86Updated 2 years ago
- In-memory sleep encryption and heap encryption for Go applications through a shellcode function.☆39Updated last year
- SAM Dumping in C#☆48Updated 5 months ago
- Alternative Shellcode Execution Via Callbacks in C# with P/Invoke☆78Updated 2 years ago
- ☆44Updated last month
- Cobalt Strike beacon object file that allows you to query and make changes to the Windows Registry☆27Updated 4 years ago
- Office 365 and Exchange Enumeration Version 2☆18Updated last year
- Active Directory certificate abuse.☆38Updated 3 years ago
- ☆81Updated last year
- Winsocket for Cobalt Strike.☆98Updated last year
- Lsass dumper evading (some) EDR detection☆24Updated 4 months ago
- To audit the security of read-only domain controllers☆117Updated last year
- ☆142Updated 2 years ago
- wspcoerce coerces a Windows computer account via SMB to an arbitrary target using MS-WSP☆82Updated 2 weeks ago
- Aggressor script add-in for CobaltStrike to track file uploads☆36Updated 2 years ago
- Enumerate information from NTLM authentication enabled web endpoints 🔎☆34Updated last year
- Groovy Post Exploitation☆20Updated 8 months ago
- A .NET Runtime for Cobalt Strike's Beacon Object Files☆72Updated 8 months ago
- Dump Citrix Secure Access auth cookie from the process memory☆76Updated 2 years ago