P4ral1ax / Retriever
Basic Linux binary shim method on the passwd binary from the shadow package to steal credentials as they are changed.
☆11Updated 2 months ago
Alternatives and similar repositories for Retriever:
Users that are interested in Retriever are comparing it to the libraries listed below
- Tool created for Red Team to test default credentials on SSH and WinRM and then execute scripts with those credentials before the passwor…☆13Updated last year
- It's what all the kids are talking about☆12Updated last year
- Custom SOCKS proxy for redteam☆12Updated 2 years ago
- Offensive Windows security tooling that allows for persistance to the operating system.☆10Updated 3 years ago
- Command and Control that uses NTP as the transport protocol.☆21Updated 3 years ago
- Winlogon and LSA Notification Password Filters☆18Updated last year
- A Flask-based HTTP(S) command and control (C2) with a web frontend. Malleable agent written in Go.☆35Updated last year
- Windows NTLM Authentication Backdoor☆14Updated 3 years ago
- A work in progress BOF/COFF loader in Rust☆46Updated last year
- Collection of Rust repos useful for Red Teamers.☆31Updated 2 years ago
- Raw socket library/framework for red team events☆34Updated last year
- maldev obviously☆25Updated 7 months ago
- GoLang package for creating Mythic Payload Types, C2 Profiles, Translation Services, WebHook listeners, and Loggers☆17Updated last week
- Python module for running BOFs☆64Updated last year
- Small tool to play with IOCs caused by Imageload events☆42Updated last year
- ☆29Updated last month
- Attack chain emulator. Write recipes for initial access easily☆20Updated last year
- ☆47Updated last year
- malleable profile generator GUI for Havoc☆56Updated last year
- Smart Card PIN swiping DLL☆77Updated 4 years ago
- A set of rootkit-like abilities for unprivileged users, and vulnerabilities based on the DOT-to-NT path conversion known issue☆96Updated 9 months ago
- ☆71Updated 2 years ago
- Asynchronous NFSv3 client in pure Python☆25Updated 2 months ago
- Grab Firefox post requests by hooking PR_Write function from nss3.dll module using trampoline hook to get passwords and emails of users☆42Updated 2 years ago
- idk man this was the default github name☆35Updated last year
- ☆66Updated 4 months ago
- Abusing Reddit API to host the C2 traffic, since most of the blue-team members use Reddit, it might be a great way to make the traffic lo…☆25Updated 2 years ago
- quASAR: ASAR manipulation made easy☆24Updated 2 years ago
- runs sliver command on all hosts, partially based on example in sliver repo☆12Updated 10 months ago
- A simple Linux in-memory .so loader☆29Updated last year