P4ral1ax / Retriever
Basic Linux binary shim method on the passwd binary from the shadow package to steal credentials as they are changed.
☆11Updated last week
Related projects ⓘ
Alternatives and complementary repositories for Retriever
- Offensive Windows security tooling that allows for persistance to the operating system.☆10Updated 3 years ago
- Custom SOCKS proxy for redteam☆12Updated 2 years ago
- Tool created for Red Team to test default credentials on SSH and WinRM and then execute scripts with those credentials before the passwor…☆13Updated last year
- A Flask-based HTTP(S) command and control (C2) with a web frontend. Malleable agent written in Go.☆35Updated last year
- Command and Control that uses NTP as the transport protocol.☆21Updated 2 years ago
- A Mythic Agent written in PIC C.☆68Updated this week
- Windows NTLM Authentication Backdoor☆14Updated 2 years ago
- It's what all the kids are talking about☆12Updated last year
- Python module for running BOFs☆64Updated last year
- Embedder is a collection of sources in different languages to embed Python interpreter with minimal dependencies☆113Updated 5 months ago
- Winlogon and LSA Notification Password Filters☆18Updated last year
- A set of rootkit-like abilities for unprivileged users, and vulnerabilities based on the DOT-to-NT path conversion known issue☆95Updated 7 months ago
- Monarch - The Adversary Emulation Toolkit☆59Updated 10 months ago
- Collection of Rust repos useful for Red Teamers.☆30Updated 2 years ago
- runs sliver command on all hosts, partially based on example in sliver repo☆12Updated 8 months ago
- It's pointy and it hurts!☆122Updated 2 years ago
- Collection of shellcode injection techniques packed in a D/Invoke weaponized DLL☆19Updated 2 years ago
- Attack chain emulator. Write recipes for initial access easily☆20Updated last year
- quASAR: ASAR manipulation made easy☆24Updated 2 years ago
- ☆62Updated 9 months ago
- Collect Windows telemetry for Maldev☆57Updated this week
- ☆83Updated 2 years ago
- Raw socket library/framework for red team events☆34Updated last year
- Linux Sleep Obfuscation☆90Updated 10 months ago
- ☆175Updated 11 months ago
- A Poc on blocking Procmon from monitoring network events☆98Updated 2 years ago
- ☆109Updated 3 years ago
- ☆112Updated 2 years ago
- ☆17Updated last year
- Asynchronous NFSv3 client in pure Python☆23Updated last week