AddDefenderExclusions Beacon Object File
☆42Jun 25, 2023Updated 2 years ago
Alternatives and similar repositories for AddDefenderExclusions-BOF
Users that are interested in AddDefenderExclusions-BOF are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆79Jul 23, 2023Updated 2 years ago
- Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE☆205Aug 25, 2023Updated 2 years ago
- Cobalt Strike BOF that Add a user to localgroup by samr☆141Nov 30, 2022Updated 3 years ago
- A method of bypassing EDR's active projection DLL's by preventing entry point exection☆24May 10, 2021Updated 5 years ago
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆101Mar 20, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆26Apr 24, 2025Updated last year
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆34Jul 18, 2025Updated 10 months ago
- Take a screenshot without injection for Cobalt Strike☆205Jun 7, 2023Updated 3 years ago
- BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel☆27Jun 13, 2024Updated last year
- CIA UAC bypass implementation that utilizes elevated COM object to write to System32 and an auto-elevated process to execute as administr…☆14Dec 30, 2023Updated 2 years ago
- Beacon Object File implementation of pwn1sher's KillDefender☆66Jun 28, 2022Updated 3 years ago
- Beacon Object File to delete token privileges and lower the integrity level to untrusted for a specified process☆46Jun 15, 2022Updated 3 years ago
- 一个用友漏洞检测工具☆29May 15, 2024Updated 2 years ago
- Cobalt Strike BOF that Add an admin user☆80Oct 11, 2022Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- 添加计划任务方法集合☆314Aug 6, 2023Updated 2 years ago
- Bypassing UAC with SSPI Datagram Contexts☆467Sep 24, 2023Updated 2 years ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆55Jul 1, 2023Updated 2 years ago
- Beacon Object File to locate and suspend the threads hosting the Event Log service☆29Jun 17, 2022Updated 3 years ago
- ☆179Mar 27, 2023Updated 3 years ago
- 哥斯拉nacos后渗透插件 maketoken adduser☆150Jul 7, 2023Updated 2 years ago
- ☆46Jun 25, 2024Updated last year
- Cobalt Strike + Brute Ratel C4 Beacon Object File (BOF) Conversion of the Mockingjay Process Injection Technique☆159Nov 7, 2023Updated 2 years ago
- ruoyi 后台定时任务注入哥斯拉内存马☆53Feb 29, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- collection of beacon object file (Cobalt strike)☆12Jan 21, 2023Updated 3 years ago
- CobaltStrike 4.0 - 4.5 Patch☆178Oct 21, 2022Updated 3 years ago
- Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray☆47Mar 4, 2023Updated 3 years ago
- A little tool to play with Windows security☆12Jan 21, 2026Updated 4 months ago
- A simple BOF (Beacon Object File) to search files in the system☆17Dec 2, 2023Updated 2 years ago
- A simple BOF that frees UDRLs☆124May 29, 2022Updated 4 years ago
- Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.☆216Oct 9, 2022Updated 3 years ago
- ☆50Aug 28, 2021Updated 4 years ago
- 练习Golang的时候写的一个Ysoserial图形化工具☆11Aug 1, 2023Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- An alternative screenshot capability for Cobalt Strike that uses WinAPI and does not perform a fork & run. Screenshot downloaded in memor…☆499Dec 7, 2025Updated 6 months ago
- golang implementation of Syswhisper2/Syswhisper3☆22Mar 23, 2022Updated 4 years ago
- 无Windows API的新型恶意程序:自缺陷程序利用堆栈溢出的隐匿稳定攻击技术研究,A new type of malicious program without Windows API☆89Mar 27, 2025Updated last year
- BOF/COFF obj file to PIC(shellcode). by golang☆39Sep 28, 2022Updated 3 years ago
- A Visual Studio template used to create Cobalt Strike BOFs☆327Nov 17, 2021Updated 4 years ago
- apache-shiro-exploit☆31Nov 16, 2023Updated 2 years ago
- ☆36Mar 4, 2025Updated last year