WKL-Sec / WMIExec
Set of python scripts which perform different ways of command execution via WMI protocol.
☆160Updated last year
Alternatives and similar repositories for WMIExec:
Users that are interested in WMIExec are comparing it to the libraries listed below
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆175Updated 2 months ago
- My implementation of the GIUDA project in C++☆167Updated last year
- ☆113Updated last year
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆252Updated last year
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆168Updated last year
- ☆164Updated last year
- Lateral Movement☆122Updated last year
- PoC to coerce authentication from Windows hosts using MS-WSP☆228Updated last year
- ACL abuse swiss-knife☆117Updated last year
- ☆218Updated 8 months ago
- Abuse leaked token handles.☆131Updated last year
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆274Updated last month
- GregsBestFriend process injection code created from the White Knight Labs Offensive Development course☆179Updated last year
- Repository contains psexec, which will help to exploit the forgotten pipe☆166Updated 2 months ago
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆383Updated 7 months ago
- Source generator to add D/Invoke and indirect syscall methods to a C# project.☆173Updated 10 months ago
- Extracting NetNTLM without touching lsass.exe☆232Updated last year
- A C# port from Invoke-GhostTask☆112Updated last year
- Lateral Movement Using DCOM and DLL Hijacking☆282Updated last year
- Github as C2 Demonstration , free API = free C2 Infrastructure☆130Updated last year
- The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).☆268Updated 2 months ago
- Patching AmsiOpenSession by forcing an error branching☆143Updated last year
- Offensive MSSQL toolkit written in Python, based off SQLRecon☆181Updated last week
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆101Updated 7 months ago
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆143Updated 8 months ago
- ☆161Updated 2 months ago
- Python script for automating the creation of serverless cloud redirectors from Cobalt Strike malleable C2 profiles☆194Updated 6 months ago
- ☆187Updated 9 months ago
- ☆77Updated last year