Idov31 / MrKaplanLinks
MrKaplan is a tool aimed to help red teamers to stay hidden by clearing evidence of execution.
☆265Updated last year
Alternatives and similar repositories for MrKaplan
Users that are interested in MrKaplan are comparing it to the libraries listed below
Sorting:
- Our Friendly Gmail will act as Server and implant will exfiltrate data via smtp and will read commands from C2 (Gmail) via imap protocol☆264Updated 2 years ago
- A .NET XOR encrypted cobalt strike aggressor implementation for chisel to utilize faster proxy and advanced socks5 capabilities.☆462Updated last year
- Awesome AV/EDR/XDR Bypass Tips☆280Updated 2 years ago
- Go shellcode loader that combines multiple evasion techniques☆381Updated 2 years ago
- Shellcode launcher for AV bypass☆217Updated last year
- ☆331Updated 2 years ago
- Local privilege escalation via PetitPotam (Abusing impersonate privileges).☆444Updated 2 years ago
- All my Source Codes (Repos) for Red-Teaming & Pentesting + Blue Teaming☆231Updated 11 months ago
- A keystroke logger targeting the Remote Desktop Protocol (RDP) related processes, It utilizes a low-level keyboard input hook, allowing i…☆391Updated 2 years ago
- A Command and Control (C2)☆307Updated 2 years ago
- Escalate Service Account To LocalSystem via Kerberos☆398Updated 2 years ago
- Command and Control Framework written in C#☆418Updated 2 years ago
- This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)☆283Updated last year
- 「🛡️」AVs/EDRs Evasion tool☆104Updated 9 months ago
- Notes, red team materials, testing tools, etc.☆143Updated 10 months ago
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆431Updated last year
- WMEye is a post exploitation tool that uses WMI Event Filter and MSBuild Execution for lateral movement☆369Updated 3 years ago
- WindowSpy is a Cobalt Strike Beacon Object File meant for automated and targeted user surveillance.☆276Updated 6 months ago
- XLL Phishing Tradecraft☆424Updated 3 years ago
- Extract C2 Traffic☆251Updated 9 months ago
- ☆470Updated 9 months ago
- PowerShell Asynchronous TCP Reverse Shell☆160Updated last year
- Terminate AV/EDR Processes using kernel driver☆349Updated 2 years ago
- Materials for the workshop "Red Team Ops: Havoc 101"☆386Updated 11 months ago
- Persistence by writing/reading shellcode from Event Log☆378Updated 3 years ago
- Kill AV/EDR leveraging BYOVD attack☆373Updated 2 years ago
- Cobalt Strike Beacon Object File (BOF) that uses WinStationConnect API to perform local/remote RDP session hijacking.☆309Updated 3 years ago
- UAC Bypass By Abusing Kerberos Tickets☆498Updated 2 years ago
- Useful C2 techniques and cheat sheets learned from engagements☆548Updated last week
- Abusing Reddit API to host the C2 traffic, since most of the blue-team members use Reddit, it might be a great way to make the traffic lo…☆269Updated 2 years ago