Lavender-exe / WKL-ToolsLinks
List of tools to use in the Advance Red Team Operations course from White Knight Labs
☆11Updated 8 months ago
Alternatives and similar repositories for WKL-Tools
Users that are interested in WKL-Tools are comparing it to the libraries listed below
Sorting:
- a port of privkit bof for havoc☆23Updated last year
- ☆155Updated 2 months ago
- ☆197Updated last year
- Situational Awareness script to identify how and where to run implants☆62Updated 9 months ago
- ☆59Updated 2 years ago
- This is way to load a shellcode, and obfuscate it, so it avoids scantime detection.☆80Updated 4 months ago
- ☆70Updated 5 months ago
- A PoC for Early Cascade process injection technique.☆192Updated 7 months ago
- Encodes a payload within a generated mock-CSS file☆59Updated last year
- Payload Generation Framework☆94Updated last year
- This is my starred repositories including the description for each tool. Makes search/filter over them easier.☆54Updated 6 months ago
- Code dump from PEN-300/OSEP updated 2022☆41Updated 3 years ago
- Utilities for obfuscating shellcode☆90Updated 5 months ago
- Most Responder's configuration power in your hand.☆51Updated 7 months ago
- ACEshark is a utility designed for rapid extraction and analysis of Windows service configurations and Access Control Entries, eliminatin…☆114Updated 7 months ago
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆145Updated last year
- A C2 framework built for my bachelors thesis☆56Updated 10 months ago
- Null-AMSI is an AMSI and ETW bypass that takes advantage of .NET types (.NET Reflection) to bypassing AV/EDR.☆72Updated 2 months ago
- pysnaffler☆102Updated 2 weeks ago
- Malicious powershell scripts loader designed to avoid detection.☆51Updated 2 years ago
- A Havoc UI tool to pivot onto a machine using ligolo-ng☆47Updated last year
- NukeAMSI is a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments.☆164Updated 2 months ago
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆130Updated 7 months ago
- A collection of Cobalt Strike Aggressor scripts.☆102Updated 3 years ago
- Patching AmsiOpenSession by forcing an error branching☆148Updated 2 years ago
- Just another C2 Redirector using CloudFlare. Support multiple C2 and multiple domains. Support for websocket listener.☆174Updated 5 months ago
- ☆40Updated last year
- Havoc plugin allowing in-memory execution of PowerShell cmdlets☆13Updated last year
- IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then refle…☆116Updated last year
- OAuth Device Code Phishing Toolkit☆84Updated 4 months ago