apt69 / COMahawk
Privilege Escalation: Weaponizing CVE-2019-1405 and CVE-2019-1322
☆351Updated 5 years ago
Alternatives and similar repositories for COMahawk:
Users that are interested in COMahawk are comparing it to the libraries listed below
- CVE-2020-0683 - Windows MSI “Installer service” Elevation of Privilege☆340Updated 3 years ago
- Convert Cobalt Strike profiles to modrewrite scripts☆592Updated 2 years ago
- Shellcode wrapper with encryption for multiple target languages☆436Updated 8 years ago
- A native backdoor module for Microsoft IIS (Internet Information Services)☆539Updated 4 years ago
- cve-2020-0688☆323Updated last year
- A script to randomize Cobalt Strike Malleable C2 profiles and reduce the chances of flagging signature-based detection controls☆437Updated 2 years ago
- Code from this article: https://blog.rapid7.com/2018/05/03/hiding-metasploit-shellcode-to-evade-windows-defender/☆174Updated 4 years ago
- Windows - Weaponizing privileged file writes with the Update Session Orchestrator service☆385Updated 4 years ago
- The idea is to collect all the C# projects that are Sharp{Word} that can be used in Cobalt Strike as execute assembly command.☆474Updated 2 years ago
- Cobalt Strike Python API☆297Updated 3 years ago
- CVE-2019-1388 UAC提权 (nt authority\system)☆186Updated 5 years ago
- Custom Metasploit post module to executing a .NET Assembly from Meterpreter session☆345Updated 4 years ago
- CVE-2020-0796 Local Privilege Escalation POC☆241Updated 4 years ago
- .NET IPv4/IPv6 machine-in-the-middle tool for penetration testers☆793Updated 2 years ago
- A Bind Shell Using the Fax Service and a DLL Hijack☆326Updated 4 years ago
- Cobalt Strike kit for Lateral Movement☆660Updated 5 years ago
- Cobalt Strike kit for Persistence☆470Updated 5 years ago
- CVE-2018-8581☆371Updated 2 years ago
- Use CVE-2020-0668 to perform an arbitrary privileged file move operation.☆217Updated 5 years ago
- CACTUSTORCH: Payload Generation for Adversary Simulations☆1,003Updated 6 years ago
- Exchange your privileges for Domain Admin privs by abusing Exchange☆996Updated 5 years ago
- mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socke…☆739Updated 4 years ago
- Run shellcode from resource☆254Updated 4 years ago
- Programmatically create an administrative user under Windows☆179Updated 7 years ago
- We developed GRAT2 Command & Control (C2) project for learning purpose.☆413Updated 4 years ago
- Exploit Code for CVE-2020-1472 aka Zerologon☆382Updated 4 years ago
- ntlm relay attack to Exchange Web Services☆330Updated 7 years ago
- ☆186Updated 3 years ago
- ☆518Updated 2 years ago
- This is a PowerShell Empire launcher PoC using PrintDemon and Faxhell.☆200Updated 4 years ago