WKL-Sec / WMIExecLinks
Set of python scripts which perform different ways of command execution via WMI protocol.
☆163Updated 2 years ago
Alternatives and similar repositories for WMIExec
Users that are interested in WMIExec are comparing it to the libraries listed below
Sorting:
- Lateral Movement☆124Updated 2 years ago
- Exploit for CVE-2023-27532 against Veeam Backup & Replication☆114Updated 2 years ago
- ACL abuse swiss-knife☆125Updated 2 years ago
- ☆100Updated 2 years ago
- Python script for automating the creation of serverless cloud redirectors from Cobalt Strike malleable C2 profiles☆200Updated last year
- A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.☆132Updated 2 years ago
- ☆163Updated 2 years ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆176Updated 2 years ago
- Weaponized HellsGate/SigFlip☆205Updated 2 years ago
- My implementation of the GIUDA project in C++☆187Updated 2 years ago
- A RunAs clone with the ability to specify the password as an argument.☆111Updated 2 years ago
- ☆170Updated last year
- Chrome browser extension-based Command & Control☆196Updated 4 months ago
- Active Directory Authentication Library☆80Updated last week
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆154Updated last year
- ☆83Updated last year
- Abuse leaked token handles.☆133Updated last year
- Evasive Golang Loader☆138Updated last year
- Use ESC1 to perform a makeshift DCSync and dump hashes☆209Updated 2 years ago
- Useful Cobalt Strike Beacon Object Files (BOFs) used during red teaming and penetration testing engagements.☆129Updated 3 years ago
- Repository contains psexec, which will help to exploit the forgotten pipe☆171Updated last year
- Github as C2 Demonstration , free API = free C2 Infrastructure☆142Updated 2 years ago
- A modification to fortra's CVE-2023-28252 exploit, compiled to exe☆54Updated last year
- To audit the security of read-only domain controllers☆118Updated last year
- A C# port from Invoke-GhostTask☆118Updated last year
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆82Updated last year
- ☆233Updated last year
- Havoc C2 profile generator☆98Updated 4 months ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆186Updated 3 years ago
- Cobalt Strike + Brute Ratel C4 Beacon Object File (BOF) Conversion of the Mockingjay Process Injection Technique☆157Updated 2 years ago