Offensive-Panda / ShadowDumperLinks
Shadow Dumper is a powerful tool used to dump LSASS memory, often needed in penetration testing and red teaming. It uses multiple advanced techniques to dump memory, allowing to access sensitive data in LSASS memory.
☆567Updated 8 months ago
Alternatives and similar repositories for ShadowDumper
Users that are interested in ShadowDumper are comparing it to the libraries listed below
Sorting:
- MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.☆535Updated 2 months ago
- DeadPotato is a windows privilege escalation utility from the Potato family of exploits, leveraging the SeImpersonate right to obtain SYS…☆456Updated last year
- Extract and execute a PE embedded within a PNG file using an LNK file.☆465Updated last year
- Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework☆635Updated 8 months ago
- A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfve…☆591Updated last year
- Collection of UAC Bypass Techniques Weaponized as BOFs☆598Updated last year
- PoC Exploit for the NTLM reflection SMB flaw.☆665Updated last week
- Windows remote execution multitool☆776Updated 4 months ago
- Cobalt Strike HTTPS beaconing over Microsoft Graph API☆620Updated last year
- A sophisticated, covert Windows-based credential dumper using C++ and MASM x64.☆442Updated last year
- HookChain: A new perspective for Bypassing EDR Solutions☆583Updated last year
- AdaptixFramework Extension Kit☆360Updated 3 weeks ago
- Stealthily inject shellcode into an executable☆443Updated 3 months ago
- A list of python tools to help create an OPSEC-safe Cobalt Strike profile.☆504Updated 8 months ago
- CVE-2025-24071: NTLM Hash Leak via RAR/ZIP Extraction and .library-ms File☆390Updated 10 months ago
- ArgFuscator.net is an open-source, stand-alone web application that helps generate obfuscated command lines for common system-native exec…☆392Updated 9 months ago
- Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).☆585Updated last year
- ☆409Updated last year
- Amsi Bypass payload that works on Windwos 11☆378Updated 2 years ago
- EDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.☆798Updated 3 months ago
- Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!