Mr-Un1k0d3r / PoisonHandler
lateral movement techniques that can be used during red team exercises
☆271Updated 5 years ago
Alternatives and similar repositories for PoisonHandler:
Users that are interested in PoisonHandler are comparing it to the libraries listed below
- Collection of awesome Cobalt Strike Aggressor Scripts. All credit due to the authors☆154Updated 6 years ago
- Lateral Movement technique using DCOM and HTA☆233Updated 2 years ago
- Auto-generate an HTaccess for payload delivery -- automatically pulls ips/nets/etc from known sandbox companies/sources that have been se…☆168Updated 4 years ago
- SPF are not as strong as you may think. Red Team tool to send email on behalf of your target corp☆138Updated 4 years ago
- GhostBuild is a collection of simple MSBuild launchers for various GhostPack/.NET projects☆248Updated 4 years ago
- Recon-AD, an AD recon tool based on ADSI and reflective DLL’s☆327Updated 5 years ago
- An Insider Threat Toolkit☆151Updated 6 years ago
- Automated script for setting up CobaltStrike redirectors (nginx reverse proxy, letsencrypt)☆143Updated 7 years ago
- ☆162Updated 2 years ago
- Evading WinDefender ATP credential-theft☆255Updated 5 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆113Updated 5 years ago
- Macro-Enabled Excel File Generator (.xlsm) using the EPPlus Library.☆147Updated 4 years ago
- DLL Generator for side loading attack☆171Updated 6 years ago
- DEPRECATED SharpRoast is a C# port of various PowerView's Kerberoasting functionality.☆252Updated 6 years ago
- Check if MS-RPRN is remotely available with powershell/c#☆173Updated 6 years ago
- A C# implementation of PrivExchange by @_dirkjan.☆155Updated 6 years ago
- Presentation material presented by Outflank team members at public events.☆187Updated 4 months ago
- Aggressor scripts for phases of a pen test or red team assessment☆182Updated 8 months ago
- Python script that takes new output from Get-DomainTrustMapping .csvs and outputs graphml. Based on DomainTrustExplorer.☆97Updated last year
- ☆126Updated 4 years ago
- Constrained Language Mode + AMSI bypass all in one☆157Updated 5 years ago
- A Powershell implementation of PrivExchange designed to run under the current user's context☆124Updated 6 years ago
- Python api for usage with cobalt strike's External C2 specification☆236Updated 2 years ago
- A collection of useful scripts for Cobalt Strike☆170Updated 8 months ago
- Powershell module to get the NetNTLMv2 hash of the current user☆93Updated 2 years ago
- A simple script to generate JScript code for calling Win32 API functions using XLM/Excel 4.0 macros via Excel.Application "ExecuteExcel4M…☆90Updated 5 years ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆325Updated 6 years ago
- ☆177Updated 6 years ago
- Quick Malicious ClickOnceGenerator for Red Team☆249Updated 4 years ago
- Scripts for performing and detecting parent PID spoofing☆146Updated 4 years ago