SaadAhla / APTmulate
This repository focuses on replicating the behavioral patterns observed in well-documented APT campaigns.
☆11Updated last week
Alternatives and similar repositories for APTmulate:
Users that are interested in APTmulate are comparing it to the libraries listed below
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆38Updated 8 months ago
- Bunch of BOF files☆30Updated 3 months ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated 9 months ago
- ☆58Updated last year
- Items related to the RedELK workshop given at security conferences☆28Updated last year
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated last year
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆42Updated last year
- Scripts to interact with Microsoft Graph APIs☆35Updated 4 months ago
- A care package of useful bofs for red team engagments☆54Updated 3 months ago
- ☆47Updated last year
- A C# port of https://gist.github.com/adamsvoboda/8f29e09d74b73e1dec3f9049c4358e80☆19Updated last year
- Smuggle a file to a user's browser☆19Updated 2 years ago
- Create PDFs with HTML smuggling attachments that save on opening the document.☆29Updated last year
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆54Updated 3 years ago
- Aggressor script that gets the latest commands from CobaltStrikes web site and creates an aggressor script based on tool options.☆21Updated 3 years ago
- Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level☆25Updated 2 years ago
- Python module for running BOFs☆70Updated last year
- Leveraging AWS Lambda Function URLs for C2 Redirection☆31Updated last year
- Run Cobalt Strike BOFs in Brute Ratel C4!☆62Updated 2 months ago
- winacl, a cross platforms Go library to work with ntSecurityDescriptor.☆29Updated last month
- A VSCode devcontainer for development of COFF files with batteries included.☆47Updated last year
- Dumping LSA secrets: a story about task decorrelation☆14Updated 8 months ago
- BOF for C2 framework☆39Updated 4 months ago
- ☆56Updated 3 years ago
- ☆24Updated 3 years ago