OmriBaso / BesoTokenLinks
A tool to Impersonate logged on users without touching LSASS (Including non-Interactive sessions).
☆93Updated 2 years ago
Alternatives and similar repositories for BesoToken
Users that are interested in BesoToken are comparing it to the libraries listed below
Sorting:
- ☆119Updated 6 months ago
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆145Updated last year
- Find .net assemblies locally☆125Updated 3 years ago
- C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps☆139Updated last year
- IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then refle…☆117Updated last year
- A tool for carrying out brute force attacks against Office 365, with built in IP rotation use AWS gateways.☆80Updated last year
- Slide decks and/or materials from conference presentations☆56Updated 2 years ago
- Async Python library to parse local and remote disk images.☆80Updated 3 months ago
- WTSImpersonator utilizes WTSQueryUserToken to steal user tokens by abusing the RPC Named Pipe "\\pipe\LSM_API_service"☆120Updated last year
- Utilities for obfuscating shellcode☆94Updated last month
- ☆74Updated 4 months ago
- DebugAmsi is another way to bypass AMSI through the Windows process debugger mechanism.☆98Updated 2 years ago
- ☆88Updated 3 years ago
- Just some random Red Team Scripts that can be useful☆152Updated last year
- A Python POC for CRED1 over SOCKS5☆158Updated last year
- Two in one, patch lifetime powershell console, no more etw and amsi!☆96Updated 5 months ago
- tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it☆124Updated 2 months ago
- Small project to facilitate creation of .lnk payloads☆73Updated 2 years ago
- Bypass AMSI By Dividing files into multiple smaller files☆46Updated 2 years ago
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆146Updated last year
- ☆135Updated 8 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆91Updated last year
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆148Updated last year
- Living Off the Foreign Land setup scripts☆71Updated 7 months ago
- Lateral Movement☆124Updated last year
- Source generator to add D/Invoke and indirect syscall methods to a C# project.☆182Updated last year
- My implementation of the GIUDA project in C++☆187Updated 2 years ago
- ☆120Updated 4 years ago
- Adversary Emulation Framework☆125Updated 3 months ago
- ☆119Updated last year