akkuman / EvilEye
A BeaconEye implement in Golang. It is used to detect the cobaltstrike beacon from memory and extract some configuration.
☆149Updated 2 years ago
Alternatives and similar repositories for EvilEye:
Users that are interested in EvilEye are comparing it to the libraries listed below
- 通过WindowsAPI获取用户凭证 ,并保存到文件中☆195Updated 8 months ago
- 模拟cobalt strike beacon上线包. Simulation cobalt strike beacon connection packet.☆79Updated 2 years ago
- 破解CS4.0☆162Updated 4 years ago
- ☆101Updated 2 years ago
- Cobalt Strike AggressorScripts For Red Team☆154Updated 3 years ago
- NTLM relay test.☆188Updated last year
- Take a screenshot without injection for Cobalt Strike☆182Updated last year
- An EternalBlue exploit implementation in pure go☆95Updated 4 years ago
- 替代PrintBug用于本地提权的新方式,主要利用MS-EFSR协议中的接口函数 借鉴了Potitpotam中对于EFSR协议的利用,实现了本地提权的一系列方式 Drawing on the use of the EFSR protocol in Potitpotam, …☆148Updated 2 years ago
- Dumping Windows Local Credentials Tools/Tricks☆68Updated 4 years ago
- Cobalt Strike 二开项目☆181Updated 2 years ago
- geacon:简单适配了一个profile配置文件,可直接拿来修改使用,用于cs上线linux.☆160Updated 2 years ago
- 👻Stowaway -- Multi-hop Proxy Tool for pentesters☆117Updated 3 years ago
- Go实现部分Rubeus功能,可执行asktgt, asktgs, s4u, describe ticket, renew ticket, asreproast等☆135Updated 2 years ago
- ☆154Updated 8 months ago
- Implement load Cobalt Strike & Metasploit&Sliver shellcode with golang☆125Updated 2 years ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆87Updated last year
- ☆91Updated 3 years ago
- webshell manager libraries | 网站管理工具☆123Updated 2 years ago
- Shellcode Reductio Entropy Tools☆64Updated last year
- impacket编程手册☆102Updated last year
- Yet another SharpSphere☆220Updated 3 years ago
- 记录一下我学习的Win32CPP☆54Updated 3 years ago
- ReturnGate, just like HellsGate.☆66Updated 2 years ago
- Offensive C# Tooling☆101Updated 4 months ago
- Another Go Shellcode Loader using Windows APIs☆139Updated 3 years ago
- 获取Exchange信息的小工具☆223Updated last year
- Cobalt Strike BOF that Add a user to localgroup by samr☆126Updated 2 years ago
- .net 命令执行的webshell☆98Updated 3 years ago
- If you only have hash, you can still operate exchange☆71Updated 3 years ago