RedSiege / CIMplant
C# port of WMImplant which uses either CIM or WMI to query remote systems
☆195Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for CIMplant
- A Cobalt Strike Beacon Object File (BOF) project which uses direct system calls to enumerate processes for specific loaded modules or pro…☆266Updated last year
- A Beacon Object File (BOF) for Cobalt Strike which uses direct system calls to enable WDigest credential caching.☆213Updated last year
- Source for tasks I have used with Covenant☆120Updated 3 years ago
- Cobalt Strike Beacon Object Files☆158Updated 2 years ago
- Executes position independent shellcode from an encrypted zip☆300Updated 3 years ago
- Tool for interacting with outlook interop during red team engagements☆144Updated 3 years ago
- Proof of concept Beacon Object File (BOF) that uses static x64 syscalls to perform a complete in memory dump of a process and send that b…☆232Updated 3 years ago
- C# version of Powermad☆156Updated 11 months ago
- Macro-Enabled Excel File Generator (.xlsm) using the EPPlus Library.☆143Updated 4 years ago
- ☆131Updated 3 years ago
- credential dump using foreshaw technique using SeTrustedCredmanAccessPrivilege☆121Updated 3 years ago
- LiquidSnake is a tool that allows operators to perform fileless lateral movement using WMI Event Subscriptions and GadgetToJScript☆327Updated 3 years ago
- ☆111Updated 4 years ago
- New UAC bypass for Silent Cleanup for CobaltStrike☆189Updated 3 years ago
- Spray a hash via smb to check for local administrator access☆140Updated 3 years ago
- ☆189Updated 4 years ago
- Pass the Hash to a named pipe for token Impersonation☆140Updated 3 years ago
- C# Wrapper around Chisel from https://github.com/jpillora/chisel☆155Updated last year
- A little tool to play with Outlook☆204Updated 3 years ago
- Another LSASS dumping tool that uses a dynamically compiled LSA plugin to grab an lsass handle and API hooking for capturing the dump in…☆260Updated 3 years ago
- SMBExec C# module☆214Updated 4 years ago
- MSBuild without MSbuild.exe☆128Updated 3 years ago
- .NET implementation of Get-GPPPassword. Retrieves the plaintext password and other information for accounts pushed through Group Policy P…☆165Updated 4 years ago
- Yet another PoC for https://www.wietzebeukema.nl/blog/hijacking-dlls-in-windows☆142Updated 4 years ago
- ☆170Updated 3 years ago
- Run Rubeus via Rundll32☆198Updated 4 years ago
- Collection of tested Cobaltstrike aggressor scripts.☆109Updated 4 years ago
- A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object☆225Updated 4 years ago
- Pass the Hash to a named pipe for token Impersonation☆294Updated 11 months ago