Helixo32 / GetSystem-LCI
GetSystem-LCI is a PowerShell script to escalate privileges from Administrator to NT AUTHORITY\SYSTEM by abusing LanguageComponentsInstaller.
☆32Updated 3 months ago
Alternatives and similar repositories for GetSystem-LCI:
Users that are interested in GetSystem-LCI are comparing it to the libraries listed below
- Lifetime AMSI bypass.☆35Updated 8 months ago
- Automatically extract and decrypt all configured scanning credentials of a Lansweeper instance.☆37Updated 3 months ago
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated last year
- ☆49Updated 4 months ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆84Updated 8 months ago
- Source code and examples for PassiveAggression☆55Updated 9 months ago
- Enumerate the Domain for Readable and Writable Shares☆17Updated last month
- ☆53Updated 4 months ago
- ☆43Updated 8 months ago
- Docker container for running CobaltStrike 4.10☆36Updated 6 months ago
- Scripts I use to deploy Havoc on Linode and setup categorization and SSL☆40Updated 9 months ago
- Situational Awareness script to identify how and where to run implants☆48Updated 3 months ago
- A Python based tool to convert custom queries from Legacy BloodHound to BloodHound CE format, with the option to directly upload them to …☆23Updated 2 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆38Updated 8 months ago
- Deploy a phishing infrastructure on the fly.☆68Updated 3 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆90Updated 9 months ago
- Tool to aid in dumping LSASS process remotely☆37Updated 7 months ago
- 🌩️ Collection of BloodHound queries for Azure☆60Updated 2 months ago
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆55Updated 3 months ago
- Launches a limited shell using PowerShell Runspaces with an optional AMSI Bypass. Does not invoke Powershell.exe☆13Updated last year
- Duplicate not owned Token from Running Process☆72Updated last year
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated 9 months ago
- Inject RDPThief into memory with PowerShell.☆61Updated 2 months ago