Sw4mpf0x / PowerLurk
Malicious WMI Events using PowerShell
☆380Updated 8 years ago
Alternatives and similar repositories for PowerLurk:
Users that are interested in PowerLurk are comparing it to the libraries listed below
- ☆517Updated 2 years ago
- The Discretionary ACL Modification Project: Persistence Through Host-based Security Descriptor Modification☆376Updated 5 years ago
- Chameleon: A tool for evading Proxy categorisation☆486Updated 3 months ago
- getsystem via parent process using ps1 & embeded c#☆399Updated last year
- ☆307Updated 6 years ago
- This function runs a number of checks on a system to help provide situational awareness to a penetration tester during the reconnaissance…☆443Updated 7 years ago
- PSAmsi is a tool for auditing and defeating AMSI signatures.☆389Updated 6 years ago
- DEPRECATED SharpRoast is a C# port of various PowerView's Kerberoasting functionality.☆253Updated 6 years ago
- PowerShell Remote Download Cradle Generator & Obfuscator☆832Updated 7 years ago
- Active Directory ACL exploitation with BloodHound☆716Updated 3 years ago
- Analyze ARP requests to identify intercommunicating hosts and stale network address configurations (SNACs)☆66Updated 3 years ago
- ☆257Updated 2 years ago
- Exchange privilege escalations to Active Directory☆754Updated last year
- Detect and abuse risky SPNs☆260Updated 7 years ago
- NTLMv1 Multitool☆611Updated last week
- SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket☆835Updated 3 years ago
- Assorted scripts and one off things☆265Updated 7 months ago
- RACE is a PowerShell module for executing ACL attacks against Windows targets.☆217Updated last year
- Rid_enum is a null session RID cycle attack for brute forcing domain controllers.☆267Updated 7 months ago
- Bypass for PowerShell Constrained Language Mode☆384Updated 3 years ago
- Recon-AD, an AD recon tool based on ADSI and reflective DLL’s☆323Updated 5 years ago
- Obfuscate powershell scripts by replacing Function names, Variables and Parameters.☆516Updated 2 years ago
- GhostBuild is a collection of simple MSBuild launchers for various GhostPack/.NET projects☆248Updated 4 years ago
- Exchange your privileges for Domain Admin privs by abusing Exchange☆1,000Updated 5 years ago
- Kerberoast attack -pure python-☆427Updated last year
- This version of PowerUp is now unsupported. See https://github.com/Veil-Framework/PowerTools/tree/master/PowerUp for the most current ver…☆243Updated 7 years ago
- Egress-Assess is a tool used to test egress data detection capabilities☆640Updated last year
- Project that retrieves crackable hashes from KRB5 AS-REP responses for users without kerberoast preauthentication enabled.☆200Updated 6 years ago
- C# implementation of harmj0y's PowerView☆1,025Updated last year
- Enumerate all network shares in the current domain. Also, can resolve names to IP addresses.☆288Updated 5 years ago