S3cur3Th1sSh1t / SharpByeBearLinks
AppXSVC Service race condition - privilege escalation
☆29Updated 6 years ago
Alternatives and similar repositories for SharpByeBear
Users that are interested in SharpByeBear are comparing it to the libraries listed below
Sorting:
- Convert Empire profiles to Apache mod_rewrite scripts☆28Updated 6 years ago
- Ransoblin (Ransomware Bokoblin)☆18Updated 5 years ago
- A script that can be deployed to Azure App for C2 / Proxy / Redirector☆41Updated 6 years ago
- ☆24Updated 5 years ago
- Extract all IP of a computer using DCOM without authentication (aka detect network used for administration)☆26Updated 5 years ago
- Ingests logs/dbs from cobalt and empire and outputs an excel report with activity, sessions, and credentials☆21Updated 5 years ago
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆33Updated 4 years ago
- Execute Mimikatz with different technique☆51Updated 4 years ago
- Get or remove RunMRU values☆59Updated 6 years ago
- This is a 64 bit VBA implementation of Christophe Tafani-Dereeper's original VBA code described in his blog @ https://blog.christophetd.f…☆21Updated 5 years ago
- C# Implementation of Jared Atkinson's Get-InjectedThread.ps1☆53Updated 4 years ago
- all published scripts devloped by ahmed khlief☆20Updated 5 years ago
- ☆28Updated 7 years ago
- Log converter from CS log to Ghostwriter CSV☆31Updated 5 years ago
- RID Hijacking Proof of Concept script by Kevin Joyce☆15Updated 7 years ago
- Scripts to automate standing up apache2 with mod_rewrite in front of C2 servers.☆47Updated 4 years ago
- Source code in Win32 ASM and C for a shellcode execution wrapper designed to mitigate the risk of shellcode execution on a host other tha…☆19Updated 9 years ago
- JALSI - Just Another Lame Shellcode Injector☆30Updated 4 years ago
- ☆48Updated 5 years ago
- POC code to crash Windows Event Logger Service☆27Updated 5 years ago
- An Ansible role to install cobalt-strike☆16Updated 5 years ago
- I used this to see if an EDR is running in Safe Mode☆36Updated 4 years ago
- ☆53Updated 5 years ago
- SharpReg is a simple code set to interact with the Remote Registry service api and is compatible with Cobalt Strike.☆29Updated 5 years ago
- A variation CredBandit that uses compression to reduce the size of the data that must be trasnmitted.☆19Updated 4 years ago
- the most basic DLL ever to pop a cmd.☆24Updated 5 years ago
- treafik fronted c2 examples☆25Updated 5 years ago
- Initial Commit of Coresploit☆57Updated 4 years ago
- DLL hijacking vulnerability scanner and PE infector tool☆21Updated 8 years ago
- Perform Windows domain enumeration via LDAP☆37Updated 3 years ago