KingOfTheNOPs / cookie-monster
BOF to steal browser cookies & credentials
☆251Updated last month
Alternatives and similar repositories for cookie-monster:
Users that are interested in cookie-monster are comparing it to the libraries listed below
- AV bypass while you sip your Chai!☆212Updated 8 months ago
- A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.☆505Updated 2 weeks ago
- Stealthily inject shellcode into an executable☆132Updated 3 months ago
- Collection of UAC Bypass Techniques Weaponized as BOFs☆437Updated 10 months ago
- yet another AV killer tool using BYOVD☆264Updated last year
- A keystroke logger targeting the Remote Desktop Protocol (RDP) related processes, It utilizes a low-level keyboard input hook, allowing i…☆385Updated last year
- Reproducing Spyboy technique, which involves terminating all EDR/XDR/AVs processes by abusing the zam64.sys driver☆253Updated 6 months ago
- Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!☆403Updated last month
- Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.☆270Updated 9 months ago
- .NET assembly loader with patchless AMSI and ETW bypass☆306Updated last year
- DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely☆318Updated last month
- ☆162Updated last year
- PDF dropper Red Team Scenairos☆179Updated 5 months ago
- Terminate AV/EDR Processes using kernel driver☆341Updated last year
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆274Updated last month
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆149Updated 8 months ago
- Kill AV/EDR leveraging BYOVD attack☆333Updated last year
- 「💀」Proof of concept on BYOVD attack☆154Updated last month
- Lifetime AMSI bypass by @ZeroMemoryEx ported to .NET Framework 4.8☆350Updated 4 months ago
- Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs☆67Updated 2 years ago
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆233Updated 7 months ago
- Extracting NetNTLM without touching lsass.exe☆232Updated last year
- Reduce Entropy And Obfuscate Youre Payload With Serialized Linked Lists☆402Updated last year
- Execute shellcode files with rundll32☆190Updated 11 months ago
- A list of python tools to help create an OPSEC-safe Cobalt Strike profile.☆388Updated 10 months ago
- BOF for Kerberos abuse (an implementation of some important features of the Rubeus).☆408Updated 2 months ago
- Patching AmsiOpenSession by forcing an error branching☆143Updated last year
- Attempt at Obfuscated version of SharpCollection☆203Updated last week
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆383Updated 7 months ago