TheWover / CertStealerLinks
A .NET tool for exporting and importing certificates without touching disk.
☆499Updated 4 years ago
Alternatives and similar repositories for CertStealer
Users that are interested in CertStealer are comparing it to the libraries listed below
Sorting:
- .Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py☆612Updated 2 years ago
- Loads any C# binary in mem, patching AMSI + ETW.☆839Updated 4 years ago
- OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team…☆820Updated 2 years ago
- Execute unmanaged Windows executables in CobaltStrike Beacons☆711Updated 2 years ago
- C# Based Universal API Unhooker☆411Updated 3 years ago
- .NET project for installing Persistence☆492Updated last year
- C# tool for UAC bypasses☆445Updated 4 years ago
- C# Reflective loader for unmanaged binaries.☆444Updated 2 years ago
- OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at s…☆537Updated 3 years ago
- Inject .NET assemblies into an existing process☆506Updated 3 years ago
- ☆364Updated 4 years ago
- C# Azure Function with an HTTP trigger that generates obfuscated PowerShell snippets that break or disable AMSI for the current process.☆426Updated last year
- .NET Project for performing Authenticated Remote Execution☆406Updated 2 years ago
- A C# tool with more flexibility to customize scheduled task for both persistence and lateral movement in red team operation☆344Updated 10 months ago
- A User Impersonation tool - via Token or Shellcode injection☆419Updated 3 years ago
- Chromium Cookie import / export tool☆310Updated 2 years ago
- C# Lsass parser☆298Updated 4 years ago
- LiquidSnake is a tool that allows operators to perform fileless lateral movement using WMI Event Subscriptions and GadgetToJScript☆343Updated 4 years ago
- A .NET Framework 4.0 Windows Agent☆515Updated this week
- Cobalt Strike BOF that spawns a sacrificial process, injects it with shellcode, and executes payload. Built to evade EDR/UserLand hooks b…☆469Updated 2 years ago
- Obfuscate ECMA CIL (.NET IL) assemblies to evade Windows Defender AMSI☆239Updated 2 years ago
- A proof-of-concept Remote Desktop (RDP) session hijack utility☆494Updated last year
- A .NET Runtime for Cobalt Strike's Beacon Object Files☆764Updated last year
- A collection of C# shellcode injection techniques. All techniques use an AES encrypted meterpreter payload. I will be building this proje…☆464Updated 4 years ago
- A C# Command & Control framework☆1,023Updated last year
- Tool to create hidden registry keys.☆489Updated 6 years ago
- Command line interface to dump LSASS memory to disk via SilentProcessExit☆454Updated 4 years ago
- Executes position independent shellcode from an encrypted zip☆304Updated 4 years ago
- Collection of C# projects. Useful for pentesting and redteaming.☆317Updated 2 years ago
- Lockless allows for the copying of locked files.☆249Updated 4 years ago