PhrozenIO / SharpFtpC2
A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.
☆87Updated last year
Alternatives and similar repositories for SharpFtpC2:
Users that are interested in SharpFtpC2 are comparing it to the libraries listed below
- Terminate AV/EDR leveraging BYOVD attack☆80Updated last year
- Duplicate not owned Token from Running Process☆72Updated last year
- ☆79Updated last year
- Exploit for CVE-2023-27532 against Veeam Backup & Replication☆108Updated last year
- ☆96Updated last year
- C# havoc implant☆98Updated 2 years ago
- Alternative Shellcode Execution Via Callbacks in C# with P/Invoke☆76Updated 2 years ago
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆62Updated 2 months ago
- Winsocket for Cobalt Strike.☆97Updated last year
- ☆51Updated 2 years ago
- ☆55Updated 11 months ago
- A small Aggressor script to help Red Teams identify foreign processes on a host machine☆84Updated 2 years ago
- Modified versions of the Cobalt Strike Process Injection Kit☆93Updated last year
- A modification to fortra's CVE-2023-28252 exploit, compiled to exe☆53Updated last year
- The vulnerability allowed a low-privileged user to escalate privileges to domain administrator in a default Active Directory environment …☆44Updated 2 years ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆82Updated 5 months ago
- Cobalt Strike + Brute Ratel C4 Beacon Object File (BOF) Conversion of the Mockingjay Process Injection Technique☆149Updated last year
- A C# port from Invoke-GhostTask☆112Updated last year
- Tool to start processes as SYSTEM using token duplication☆38Updated 4 years ago
- C# implementation of Get-AADIntSyncCredentials from AADInternals, which extracts Azure AD Connect credentials to AD and Azure AD from AAD…☆39Updated last year
- To audit the security of read-only domain controllers☆114Updated last year
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆74Updated 2 years ago
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆83Updated 2 years ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆86Updated 2 years ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆54Updated 3 years ago
- PowerShell script to terminate protected processes such as anti-malware and EDRs.☆26Updated last year
- Simple PoC Python agent to showcase Havoc C2's custom agent interface. Not operationally safe or stable. Released with accompanying blog …☆80Updated last year
- Create Anti-Copy DRM Malware☆54Updated 7 months ago
- ☆88Updated 2 years ago
- PoC-Malware-TTPs☆49Updated last year