Idov31 / MrKaplan
MrKaplan is a tool aimed to help red teamers to stay hidden by clearing evidence of execution.
☆258Updated last year
Alternatives and similar repositories for MrKaplan:
Users that are interested in MrKaplan are comparing it to the libraries listed below
- A .NET XOR encrypted cobalt strike aggressor implementation for chisel to utilize faster proxy and advanced socks5 capabilities.☆451Updated last year
- Shellcode launcher for AV bypass☆215Updated last year
- Local privilege escalation via PetitPotam (Abusing impersonate privileges).☆436Updated 2 years ago
- Awesome AV/EDR/XDR Bypass Tips☆271Updated 2 years ago
- Go shellcode loader that combines multiple evasion techniques☆366Updated last year
- Materials for the workshop "Red Team Ops: Havoc 101"☆375Updated 7 months ago
- Kill AV/EDR leveraging BYOVD attack☆353Updated last year
- ☆324Updated last year
- All my Source Codes (Repos) for Red-Teaming & Pentesting + Blue Teaming☆229Updated 7 months ago
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆409Updated 10 months ago
- This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)☆272Updated 9 months ago
- Revenant - A 3rd party agent for Havoc that demonstrates evasion techniques in the context of a C2 framework☆377Updated 9 months ago
- Persistence by writing/reading shellcode from Event Log☆371Updated 2 years ago
- Useful C2 techniques and cheatsheets learned from engagements☆502Updated last month
- WMEye is a post exploitation tool that uses WMI Event Filter and MSBuild Execution for lateral movement☆366Updated 3 years ago
- Amsi Bypass payload that works on Windwos 11☆377Updated last year
- Quick python utility I wrote to turn HTTP requests from burp suite into Cobalt Strike Malleable C2 profiles☆386Updated 2 years ago
- Escalate Service Account To LocalSystem via Kerberos☆395Updated last year
- COM Hijacking VOODOO☆292Updated last month
- A list of python tools to help create an OPSEC-safe Cobalt Strike profile.☆420Updated last year
- A Command and Control (C2)☆302Updated 2 years ago
- MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.☆515Updated 2 weeks ago
- Command and Control Framework written in C#☆402Updated last year
- WindowSpy is a Cobalt Strike Beacon Object File meant for automated and targeted user surveillance.☆266Updated 2 months ago
- Our Friendly Gmail will act as Server and implant will exfiltrate data via smtp and will read commands from C2 (Gmail) via imap protocol☆261Updated 2 years ago
- Cobalt Strike HTTPS beaconing over Microsoft Graph API☆590Updated 10 months ago
- micr0shell is a Python script that dynamically generates Windows X64 PIC Null-Free reverse shell shellcode.☆187Updated 9 months ago
- Collection of Beacon Object Files (BOF) for Cobalt Strike☆580Updated 9 months ago
- Terminate AV/EDR Processes using kernel driver☆342Updated last year
- Malleable C2 Profiles. A collection of profiles used in different projects using Cobalt Strike & Empire.☆364Updated last year