S3cur3Th1sSh1t / SharpVeeamDecryptor
Decrypt Veeam database passwords
☆156Updated last year
Alternatives and similar repositories for SharpVeeamDecryptor:
Users that are interested in SharpVeeamDecryptor are comparing it to the libraries listed below
- Two in one, patch lifetime powershell console, no more etw and amsi!☆83Updated 7 months ago
- Lateral Movement☆122Updated last year
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆78Updated 5 months ago
- ☆74Updated 6 months ago
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated last year
- To audit the security of read-only domain controllers☆114Updated last year
- A C# tool to output crackable DPAPI hashes from user MasterKeys☆132Updated 5 months ago
- ☆107Updated 3 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆88Updated 8 months ago
- Duplicate not owned Token from Running Process☆72Updated last year
- Enumerate information from NTLM authentication enabled web endpoints 🔎☆35Updated last year
- Abuse Azure API permissions for red teaming☆61Updated 2 years ago
- ☆85Updated 9 months ago
- BadExclusionsNWBO is an evolution from BadExclusions to identify folder custom or undocumented exclusions on AV/EDR☆73Updated last year
- Lateral Movement via the .NET Profiler☆79Updated 3 months ago
- Abuse leaked token handles.☆131Updated last year
- Adversary Emulation Framework☆66Updated 7 months ago
- C# havoc implant☆98Updated 2 years ago
- ☆113Updated last year
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆46Updated 11 months ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆120Updated 3 years ago
- C# version of NTLMRawUnHide☆72Updated 2 years ago
- ☆95Updated last year
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆73Updated 2 years ago
- Slide decks and/or materials from conference presentations☆55Updated 2 years ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆86Updated 2 years ago
- Terminate AV/EDR leveraging BYOVD attack☆80Updated last year