NetSPI / ruler
A tool to abuse Exchange services
☆10Updated last year
Alternatives and similar repositories for ruler:
Users that are interested in ruler are comparing it to the libraries listed below
- Study notes on Windows NTLM Reflection and token stealing based EOPs.☆17Updated 3 years ago
- ☆52Updated last year
- ☆35Updated last year
- Exploit for Arbitrary File Move vulnerability in ZoneAlarm AV☆26Updated 2 years ago
- Perform Windows domain enumeration via LDAP☆36Updated 2 years ago
- OSED Practice binary☆24Updated last year
- ☆36Updated 10 months ago
- A little implant which SSH's back with a shell☆37Updated 3 years ago
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆39Updated last year
- some sploits☆17Updated 7 months ago
- Execute Mimikatz with different technique☆51Updated 3 years ago
- Proof-of-Concept to evade auditd by writing /proc/PID/mem☆21Updated last year
- A PoC~ish of https://elastic.github.io/security-research/malware/2022/01/01.operation-bleeding-bear/article/☆31Updated last year
- Remote code execution in Power Platform connectors via JSON deserialization☆21Updated 2 years ago
- A cloud automation system for Red Teams based on Terraform and Ansible☆25Updated 3 years ago
- Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged p…☆49Updated 2 years ago
- Execute embedded Mimikatz☆13Updated 3 years ago
- Rust implementation of the Process Herpaderping☆24Updated last year
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆30Updated last month
- ☆15Updated 2 years ago
- Cobalt Strike BOF to list Windows Pipes & return their Owners & DACL Permissions☆54Updated 3 years ago
- ☆18Updated last year
- c# reverse shell poc☆27Updated 6 years ago
- This repository contains several AMSI bypasses. These bypasses are based on some very nice research that has been put out by some awesome…☆24Updated 2 years ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 2 years ago
- Cobalt Strike (CS) Beacon Object File (BOF) foundation for kernel exploitation using CVE-2021-21551.☆29Updated last year
- ☆23Updated last month
- A small Python-Script to extract NetNTLMv2 Hashes from NTMLssp-HTTP-Authentications, which were captured in a pcap.☆25Updated 2 years ago
- Docker container for running CobaltStrike 4.10☆37Updated 7 months ago
- ☆48Updated 2 years ago