XiaoliChan / wmiexec-RegOutLinks
Modify version of impacket wmiexec.py, get output(data,response) from registry, don't need SMB connection, also bypassing antivirus-software in lateral movement like WMIHACKER.
☆278Updated 2 years ago
Alternatives and similar repositories for wmiexec-RegOut
Users that are interested in wmiexec-RegOut are comparing it to the libraries listed below
Sorting:
- Some Service DCOM Object and SeImpersonatePrivilege abuse.☆363Updated 2 years ago
- NTLM relay test.☆191Updated 2 months ago
- Cobalt Strike AggressorScripts For Red Team☆154Updated 4 years ago
- CobaltStrike 4.0 - 4.5 Patch☆179Updated 2 years ago
- Abuse Impersonate Privilege from Service to SYSTEM like other potatoes do☆391Updated 2 years ago
- Memshell☆279Updated 3 years ago
- Use to build an anonymous SMB file server.☆231Updated 4 years ago
- Implement load Cobalt Strike & Metasploit&Sliver shellcode with golang☆125Updated 2 years ago
- CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some inte…☆226Updated 2 years ago
- Some Attacks of Exchange SSRF ProxyLogon&ProxyShell☆167Updated 3 years ago
- Take a screenshot without injection for Cobalt Strike☆200Updated 2 years ago
- Use python to perform Kerberos pre-auth bruteforcing☆203Updated 2 years ago
- ProxyLogon Full Exploit Chain PoC (CVE-2021–26855, CVE-2021–26857, CVE-2021–26858, CVE-2021–27065)☆182Updated 3 years ago
- Modular C2 framework aiming to ease post exploitation for red teamers.☆187Updated 3 years ago
- C2 redirector base on caddy☆207Updated last year
- ProxyLogon(CVE-2021-26855+CVE-2021-27065) Exchange Server RCE(SSRF->GetWebShell)☆122Updated 4 years ago
- vhost password decrypt☆252Updated 11 months ago
- powershell codes of my blog.☆102Updated 5 years ago
- nim,免杀,红队,shellcode,bypass,apt,bypass-av.☆203Updated 2 years ago
- PoC for the CVE-2022-41080 , CVE-2022-41082 and CVE-2022-41076 Vulnerabilities Affecting Microsoft Exchange Servers☆94Updated 2 years ago
- GetProcAddressByHash/remap/full dll unhooking/Tartaru's Gate/Spoofing Gate/universal/Perun's Fart/Spoofing-Gate/EGG/RecycledGate/syswhisp…☆323Updated last year
- POC for RCE using vulnerabilities described in VMSA-2023-0001☆148Updated 2 years ago
- Yet another SharpSphere☆225Updated 4 years ago
- 👻Stowaway -- Multi-hop Proxy Tool for pentesters☆119Updated 3 years ago
- 提取DC日志,快速获取域用户对应IP地址☆308Updated 3 years ago
- Another Go Shellcode Loader using Windows APIs☆141Updated 3 years ago
- 利用NTLM Hash读取Exchange邮件☆437Updated 8 months ago
- UAC bypass for x64 Windows 7 - 11(无弹窗版)☆280Updated 3 years ago
- A tool to extract the IdP cert from vCenter backups and log in as Administrator☆518Updated 2 years ago
- Dumping Windows Local Credentials Tools/Tricks☆68Updated 5 years ago