Octoberfest7 / DNS_Tunneling
DNS Tunneling using powershell to download and execute a payload. Works in CLM.
☆218Updated 2 years ago
Alternatives and similar repositories for DNS_Tunneling:
Users that are interested in DNS_Tunneling are comparing it to the libraries listed below
- ☆378Updated 2 years ago
- ☆299Updated 6 months ago
- This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR …☆257Updated 2 years ago
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆329Updated last year
- Python library with CLI allowing to remotely dump domain user credentials via an ADCS without dumping the LSASS process memory☆388Updated last year
- Run Powershell without software restrictions.☆285Updated 3 years ago
- Some scripts to abuse kerberos using Powershell☆337Updated last year
- Ask a TGS on behalf of another user without password☆470Updated last month
- ☆208Updated 3 years ago
- Recovering NTLM hashes from Credential Guard☆336Updated 2 years ago
- A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other ob…☆460Updated 2 years ago
- ☆199Updated last week
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆256Updated 2 years ago
- ☆246Updated last year
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆212Updated last month
- Bypassing Kerberoast Detections with Modified KDC Options and Encryption Types☆386Updated last month
- Shellcode launcher for AV bypass☆215Updated last year
- Persistence by writing/reading shellcode from Event Log☆371Updated 2 years ago
- ☆385Updated 4 years ago
- Dump NTDS with golden certificates and UnPAC the hash☆633Updated last year
- ☆151Updated 3 months ago
- Timeroasting scripts by Tom Tervoort☆282Updated last year
- Kill AV/EDR leveraging BYOVD attack☆353Updated last year
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares☆175Updated 2 years ago
- Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domai…☆235Updated 4 months ago
- Microsoft Signed PowerShell scripts☆214Updated 2 years ago
- Identifies the bytes that Microsoft Defender flags on.☆84Updated 3 years ago
- Detect whether a service is installed (blindly) and/or running (if exposing named pipes) on a remote machine without using local admin pr…☆231Updated last year
- PowerShell Constrained Language Mode Bypass☆262Updated 4 years ago
- The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).☆301Updated 6 months ago