S3N4T0R-0X0 / APT29-Adversary-Simulation
This is a simulation of attack by the Cozy Bear group (APT-29) targeting diplomatic missions
☆26Updated 5 months ago
Related projects ⓘ
Alternatives and complementary repositories for APT29-Adversary-Simulation
- Scripts I use to deploy Havoc on Linode and setup categorization and SSL☆39Updated 5 months ago
- this script adds the ability to encode shellcode (.bin) in XOR,chacha20, AES. You can choose between 2 loaders (Myph / 221b)☆77Updated 11 months ago
- Opsec tool for finding user sessions by analyzing event log files through RPC (MS-EVEN)☆57Updated 5 months ago
- Duplicate not owned Token from Running Process☆72Updated last year
- ☆92Updated 9 months ago
- A C2 framework built for my bachelors thesis☆53Updated 3 weeks ago
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆43Updated last year
- A GUI wrapper inside of Havoc to interact with bloodhound CE☆69Updated 9 months ago
- PowerShell Reverse Shell☆61Updated last year
- PowerShell script to generate ShellCode in various formats☆39Updated 2 months ago
- A modification to fortra's CVE-2023-28252 exploit, compiled to exe☆52Updated 10 months ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆79Updated 4 months ago
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆45Updated 8 months ago
- ☆25Updated last year
- RCE PoC for Empire C2 framework <5.9.3☆26Updated 9 months ago
- ☆25Updated last year
- Inject RDPThief into memory with PowerShell.☆55Updated last month
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated 11 months ago
- Source code and examples for PassiveAggression☆54Updated 5 months ago
- PoC showcasing new DarkGate Install Script retrieval technique via DNS TXT Record☆40Updated 11 months ago
- Ethical Remote Acces Tool Client and Server for W10 and Linux Persist functionality☆51Updated last year
- ☆35Updated 11 months ago
- ☆55Updated 7 months ago
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆53Updated 7 months ago
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆78Updated 2 months ago
- Exploit for the CVE-2024-5806☆40Updated 5 months ago
- malleable profile generator GUI for Havoc☆56Updated last year
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated last year
- Fortinet Fortimanager Unauthenticated Remote Code Execution AKA FortiJump CVE-2024-47575☆60Updated last week