WMSR / utils
☆11Updated 4 years ago
Alternatives and similar repositories for utils:
Users that are interested in utils are comparing it to the libraries listed below
- Walking the PEB in VBA☆23Updated 5 years ago
- ☆26Updated 6 years ago
- ☆28Updated 7 years ago
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated last year
- ☆17Updated 6 years ago
- ☆15Updated 5 years ago
- Protect your servers with a secret header☆29Updated 4 years ago
- C# utility that uses WMI to run "cmd.exe /c netstat -n", save the output to a file, then use SMB to read and delete the file remotely☆38Updated 5 years ago
- Apply a filter to the events being reported by windows event logging☆15Updated 4 years ago
- Cobalt Strike log state tracking, parsing, and storage☆24Updated 5 years ago
- A PowerShell script to parse the docx/docm file format and update the template location.☆17Updated 5 years ago
- Forked and updated with some additional features over the original☆17Updated 4 years ago
- Helpful operator notes and techniques in actionable form☆16Updated last year
- The project is called GreatSCT (Great Scott). GreatSCT is an open source project to generate application white list bypasses. This tool i…☆30Updated 7 years ago
- .net tool that uses WMI queries to enumerate active sessions and accounts configured to run services on remote systems☆33Updated 5 years ago
- C# code to run PIC using CreateThread☆17Updated 6 years ago
- ☆25Updated 6 years ago
- Visual Studio (C++) Solution Template for Payloads☆18Updated 5 years ago
- SSDP Service Discovery☆17Updated 6 years ago
- CVE-2018-18368 SEP Manager EoP Exploit☆17Updated 5 years ago
- A tool to sync mythic events with ghostwriter oplog.☆13Updated 5 months ago
- RID Hijacking Proof of Concept script by Kevin Joyce☆15Updated 6 years ago
- ☆20Updated 6 years ago
- Modifies machine.config for persistence after installing signed .net assembly onto GAC☆13Updated 3 years ago
- This is a 64 bit VBA implementation of Christophe Tafani-Dereeper's original VBA code described in his blog @ https://blog.christophetd.f…☆21Updated 5 years ago
- ☆14Updated 3 years ago
- AMSI detection PoC☆31Updated 5 years ago
- various slides and presentations I've worked on☆18Updated last month
- Tool to acquire netNTLM hashes on a local machine wihtout network traffic☆13Updated 6 years ago
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 5 years ago