LeighlinRamsay / GunnerC2View external linksLinks
☆154Oct 2, 2025Updated 4 months ago
Alternatives and similar repositories for GunnerC2
Users that are interested in GunnerC2 are comparing it to the libraries listed below
Sorting:
- A portable C# utility for enumerating local and remote windows sessions☆54Jan 1, 2026Updated last month
- Payload Generation Workflow☆40Jul 18, 2025Updated 6 months ago
- Simple EDR that injects a DLL into a process to place a hook on specific Windows API☆97Aug 27, 2023Updated 2 years ago
- PowerShell tool to enumerate existing exclusions in Windows Defender as low privileged user☆12Oct 14, 2024Updated last year
- ☆139Jan 16, 2025Updated last year
- ☆37Aug 6, 2025Updated 6 months ago
- load shellcode without P/D Invoke and VirtualProtect call.☆165Sep 2, 2025Updated 5 months ago
- Specialized tool to dump Position Independent Code.☆22Aug 4, 2020Updated 5 years ago
- Open-source multi-purpose remote access tool for Microsoft Windows☆192Updated this week
- Lateral Movement as loggedon User via Speech Named Pipe COM & ISpeechNamedPipe + COM Hijacking☆136Jul 2, 2025Updated 7 months ago
- Microsoft Entra ID (Azure AD) Unauthenticated Enumeration☆60Feb 5, 2026Updated last week
- Port of Cobalt Strike's Process Inject Kit☆190Dec 1, 2024Updated last year
- ZeroProbe is an advanced enumeration and analysis framework designed for exploit developers, security researchers, and red teamers. It pr…☆106Mar 10, 2025Updated 11 months ago
- Python module for running BOFs☆79Nov 28, 2025Updated 2 months ago
- Using Chromium-based browsers as a proxy for C2 traffic.☆141Dec 6, 2025Updated 2 months ago
- List/Read contents of Zip files (in memory and without extraction) using CobaltStrike's Execute-Assembly☆61May 24, 2022Updated 3 years ago
- SATO is a PowerShell tool focuses on providing flexible, multi-grant type support for obtaining, managing, and analyzing Azure tokens.☆20Nov 24, 2025Updated 2 months ago
- An Ansible collection that installs an ADFS deployment with optional configurations.☆44Dec 19, 2025Updated last month
- A PoC UDRL for Cobalt Strike built with Crystal Palace that combines Raphael Mudge's page streaming technique with a modular call gate (D…☆65Jan 21, 2026Updated 3 weeks ago
- This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly☆20Apr 17, 2023Updated 2 years ago
- ☆85May 15, 2025Updated 8 months ago
- Flexible LDAP proxy that can be used to inspect & transform all LDAP packets generated by other tools on the fly.☆188Dec 23, 2025Updated last month
- Proof-of-concept implementation of AI-enabled postex DLLs☆54Sep 10, 2025Updated 5 months ago
- Local SYSTEM auth trigger for relaying - X☆155Jul 23, 2025Updated 6 months ago
- adws enumeration bof☆162Oct 2, 2025Updated 4 months ago
- Evasive shellcode loader☆398Oct 17, 2024Updated last year
- Read the contents of MS Word Documents using Cobalt Strike's Execute-Assembly☆117Sep 30, 2024Updated last year
- TeamServer and Client of Exploration Command and Control Framework☆177Jan 6, 2026Updated last month
- rust clr heap encryption (https://github.com/lap1nou/CLR_Heap_encryption), but no heap encryption.☆17Jan 6, 2024Updated 2 years ago
- Tool for MSSQL relay audit and abuse☆57Dec 17, 2024Updated last year
- A modern, web-based GUI for Hashcat that provides an intuitive interface for hash cracking operations, featuring real-time monitoring, pe…☆33Mar 5, 2025Updated 11 months ago
- Windows protocol library, including SMB and RPC implementations, among others.☆614Jan 21, 2026Updated 3 weeks ago
- A Beacon Object File (BOF) that performs the complete ESC1 attack chain in a single execution: certificate request with arbitrary SAN (+S…☆113Dec 21, 2025Updated last month
- Submission, compilation and execution of C# code snippets, using an unmanaged CLR Host☆53Jan 29, 2015Updated 11 years ago
- COM-based DLL Surrogate Injection☆140Dec 9, 2025Updated 2 months ago
- ☆334Aug 20, 2025Updated 5 months ago
- A small How-To on creating your own weaponized WSL file☆119Jul 23, 2025Updated 6 months ago
- 「⚠️」Performing a BYOVD on the truesight.sys driver☆44Dec 7, 2024Updated last year
- Parses Cobalt Strike malleable C2 profiles.☆60Feb 7, 2026Updated last week