KINGSABRI / ServerlessRedirector
Serverless Redirector in various cloud vendor for red team
☆71Updated 2 years ago
Alternatives and similar repositories for ServerlessRedirector:
Users that are interested in ServerlessRedirector are comparing it to the libraries listed below
- Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post☆88Updated 2 years ago
- Slide decks and/or materials from conference presentations☆55Updated 2 years ago
- Simple BOF to read the protection level of a process☆114Updated last year
- ☆70Updated last year
- RDLL for Cobalt Strike beacon to silence sysmon process☆87Updated 2 years ago
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆78Updated 2 years ago
- Sliver extension performing TCP redirection tasks without performing cross-process injection.☆62Updated 2 weeks ago
- A C# port of the MinHook API hooking library☆50Updated 2 years ago
- ☆98Updated 9 months ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆86Updated 2 years ago
- ☆111Updated 3 years ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆83Updated 8 months ago
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated 2 years ago
- ☆54Updated 3 years ago
- Python module for running BOFs☆64Updated last year
- ☆61Updated 2 years ago
- ☆139Updated 2 years ago
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆111Updated last year
- ☆89Updated 2 years ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 2 years ago
- Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations☆144Updated 10 months ago
- ☆55Updated 10 months ago
- ☆83Updated 2 years ago
- A C# tool to output crackable DPAPI hashes from user MasterKeys☆132Updated 4 months ago
- This repo hosts a poc of how to execute F# code within an unmanaged process☆66Updated 7 months ago
- A collection of various and sundry code snippets that leverage .NET dynamic tradecraft☆139Updated 8 months ago
- ☆74Updated 6 months ago
- ☆113Updated last year
- Lateral Movement via the .NET Profiler☆77Updated 2 months ago
- Scripts for public use that we've randomly written, or have updated from other people's work.☆40Updated 7 months ago