MzHmO / WhoIsWho
Amazing whoami alternatives
☆139Updated last year
Alternatives and similar repositories for WhoIsWho:
Users that are interested in WhoIsWho are comparing it to the libraries listed below
- My implementation of the GIUDA project in C++☆183Updated last year
- comprehensive .NET tool designed to extract and display detailed information about Windows Defender exclusions and Attack Surface Reducti…☆198Updated 11 months ago
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆148Updated last year
- GregsBestFriend process injection code created from the White Knight Labs Offensive Development course☆189Updated last year
- ☆277Updated last year
- Just another C2 Redirector using CloudFlare. Support multiple C2 and multiple domains. Support for websocket listener.☆158Updated last month
- psexecsvc - a python implementation of PSExec's native service implementation☆195Updated 3 months ago
- A Rust implementation of Internal-Monologue — retrieving NetNTLM hashes without touching LSASS, leveraging SSPI for NTLM negotiation and …☆162Updated 2 weeks ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆199Updated 6 months ago
- Extracting NetNTLM without touching lsass.exe☆235Updated last year
- ☆172Updated 6 months ago
- Privileger is a tool to work with Windows Privileges☆136Updated 2 years ago
- Hiding shellcode in plain sight within a large memory region. Inspired by technique used by Raspberry Robin's Roshtyak☆205Updated 2 years ago
- An interactive shell to spoof some LOLBins command line☆184Updated last year
- Chrome browser extension-based Command & Control☆134Updated 2 months ago
- Dig your way out of networks like a Meerkat using SSH tunnels via ClickOnce.☆114Updated last week
- ☆119Updated last year
- ☆90Updated 2 weeks ago
- Weaponized HellsGate/SigFlip☆199Updated last year
- Blocks EDR Telemetry by performing Person-in-the-Middle attack where network filtering is applied using iptables. The blocked destination…☆141Updated 9 months ago
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆187Updated 5 months ago
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆151Updated last year
- Porting of BOF InlineExecute-Assembly to load .NET assembly in process but with patchless AMSI and ETW bypass using hardware breakpoint.☆225Updated 2 years ago
- DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely☆361Updated 4 months ago
- Ghosting-AMSI☆159Updated 2 weeks ago
- Our Tips&Tricks☆117Updated 2 months ago
- Execute shellcode from a remote-hosted bin file using Winhttp.☆234Updated last year
- CVE-2024-38200 & CVE-2024-43609 - Microsoft Office NTLMv2 Disclosure Vulnerability☆140Updated 3 months ago
- Execute shellcode files with rundll32☆199Updated last year
- Evasive Golang Loader☆131Updated 9 months ago