Yeeb1 / SharpRDPlusSnatcher
Exploits a flaw in Remote Desktop Plus by monitoring and decrypting temporary .rdp files in %localappdata%/Temp, revealing credentials used in remote desktop sessions.
☆16Updated last year
Alternatives and similar repositories for SharpRDPlusSnatcher:
Users that are interested in SharpRDPlusSnatcher are comparing it to the libraries listed below
- Automatically extract and decrypt all configured scanning credentials of a Lansweeper instance.☆37Updated 5 months ago
- Spawns a process from a process. Can sometimes be used to run a session > 0 process from session 0.☆15Updated 2 years ago
- Python3 rewrite of AsOutsider features of AADInternals☆45Updated 4 months ago
- ☆54Updated 2 months ago
- SAM Dumping in C#☆48Updated 3 months ago
- in-process powershell runner for BRC4☆45Updated last year
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated 11 months ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆55Updated 3 years ago
- A python script that automates a C2 Profile build☆40Updated last month
- Enumerate Domain Users Without Authentication☆33Updated 2 weeks ago
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆74Updated 2 years ago
- Sniffing files generator☆54Updated 2 months ago
- ☆50Updated 6 months ago
- A Python based tool to convert custom queries from Legacy BloodHound to BloodHound CE format, with the option to directly upload them to …☆26Updated 3 months ago
- Impacket pre-compiled binaries☆16Updated last year
- ☆106Updated 2 months ago
- ☆55Updated 6 months ago
- Secretsdump C# version only supporting local (live) operation☆49Updated 2 weeks ago
- Tool to aid in dumping LSASS process remotely☆38Updated 9 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆38Updated 9 months ago
- Leveraging AWS Lambda Function URLs for C2 Redirection☆31Updated last year
- A simple C++ Windows tool to get information about processes exposing named pipes.☆37Updated last month
- ☆48Updated last year
- A BOF that suspends non-GUI threads for a target process or resumes them resulting in stealthy process silencing.☆46Updated 3 weeks ago
- ☆44Updated 10 months ago
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆112Updated last month
- A helper script for consolidating Aggressor and BOF repositories into a single CNA for Cobalt Strike.☆13Updated last year
- An impacket-lite cli tool that combines many useful impacket functions using a single session.☆48Updated 2 months ago
- Installing wazuh SIEM Unified XDR and SIEM protection☆26Updated 4 months ago
- A BOF for lazy people☆18Updated last year