NetSPI / MonkeyWorks
☆60Updated 9 months ago
Related projects: ⓘ
- CSHARP DCOM Fun☆120Updated 5 years ago
- Using DInvoke to patch AMSI.dll in order to bypass AMSI detections triggered when loading .NET tradecraft via Assembly.Load().☆213Updated 4 years ago
- Simple packer for arbitrary data using only .NET API calls. Produces a unique signature with every usage. Standalone program and library.…☆90Updated 5 years ago
- Library of tools and examples for loading/bootstrapping managed code from unmanaged code in .NET☆62Updated 4 years ago
- InsecurePowerShell is PowerShell with some security features removed.☆102Updated 6 years ago
- Various C# projects for offensive security☆106Updated 4 years ago
- Managed code hooking template.☆127Updated 2 years ago
- .NET tool for enumeration processes and dumping memory.☆56Updated 5 years ago
- Code Exec via Excel☆83Updated 7 years ago
- WMI Event Subscription Persistence in C#☆112Updated 5 years ago
- External C2 Using IE COM Objects☆96Updated 5 years ago
- Lateral Movement technique using DCOM and HTA☆228Updated last year
- ReaCOM has got a lot of tools to use and is related to component object model☆73Updated 4 years ago
- MSBuild Without MSBuild.exe☆155Updated 3 years ago
- ☆131Updated this week
- ☆157Updated this week
- ☆177Updated 2 years ago
- ObscurityLabs RedTeam C# Toolkit☆119Updated 5 years ago
- A simple script to generate JScript code for calling Win32 API functions using XLM/Excel 4.0 macros via Excel.Application "ExecuteExcel4M…☆87Updated 4 years ago
- Tool for injecting a "TCP Relay" managed assembly into an unmanaged process☆62Updated 5 years ago
- SharpShell is a proof-of-concept offensive C# scripting engine that utilizes the Rosyln C# compiler to quickly cross-compile .NET Framew…☆123Updated 5 years ago
- C2Bridges allow developers to create new custom communication protocols and quickly utilize them within Covenant.☆67Updated 3 years ago
- A C# tool for enumerating remote access policies through group policy.☆71Updated 5 years ago
- DLL Generator for side loading attack☆165Updated 5 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆143Updated 4 years ago
- A C++ POC for process injection using NtCreateSectrion, NtMapViewOfSection and RtlCreateUserThread. Credit to @spotheplanet for his notes…☆41Updated 3 years ago
- SharpBox is a C# tool for compressing, encrypting, and exfiltrating data to DropBox using the DropBox API.☆108Updated 3 years ago
- Simple Process Hollowing in C#☆66Updated 6 years ago
- A C# penetration testing tool to discover low-haning web fruit via web requests.☆90Updated 2 years ago
- A proof-of-concept subject interface package (SIP) used to demonstrate digital signature subversion attacks.☆92Updated 6 years ago