P0x00 / ASPX_Bonanza
ASPX ShellCode Loader
☆50Updated last year
Alternatives and similar repositories for ASPX_Bonanza:
Users that are interested in ASPX_Bonanza are comparing it to the libraries listed below
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆73Updated last year
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆32Updated 2 years ago
- command execute without 445 port☆52Updated 3 years ago
- MSSQL CLR for pentest.☆53Updated last year
- ☆31Updated last year
- ☆34Updated 2 months ago
- CrackMapExec extension module/protocol support☆42Updated last year
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆43Updated last year
- 一个普通的BOF用来BypassUAC☆21Updated last year
- 在cobaltstrike中使用的bof工具集,收集整理验证好用的bof。☆12Updated 3 years ago
- Cobalt Strike BOF that Add an admin user☆71Updated 2 years ago
- ☆49Updated last year
- Beacon Object File implementation of pwn1sher's KillDefender☆66Updated 2 years ago
- ☆23Updated last week
- Repository of scripts from my blog post on bypassing the YARA rule Windows_Trojan_CobaltStrike_f0b627fc by generating alternative shellco…☆39Updated 6 months ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆88Updated 2 years ago
- PortBender修改为exe版本☆28Updated last year
- If you only have hash, you can still operate exchange☆72Updated 3 years ago
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆45Updated 2 years ago
- CVE-2023-21707 EXP☆28Updated last year
- 通过websocket在IIS8(Windows Server 2012)以上实现socks5代理☆87Updated last year
- More EFS coerced authentication method with PetitPotam.py☆23Updated 2 years ago
- A Custom CLR Assembly for MSSQL of the popular tool GodPotato☆75Updated last year
- AddDefenderExclusions Beacon Object File☆37Updated last year
- Zerologon自动化脚本☆88Updated last year
- ☆19Updated last year
- ☆17Updated last year
- ☆30Updated 2 years ago
- 将PE文件进行AES加密,然后从远程拉取加载内存中实现免杀☆36Updated 2 years ago
- RPC 调用添加ssp扩展dump lsass☆18Updated 2 years ago