apt69 / COMahawk
Privilege Escalation: Weaponizing CVE-2019-1405 and CVE-2019-1322
☆350Updated 5 years ago
Alternatives and similar repositories for COMahawk:
Users that are interested in COMahawk are comparing it to the libraries listed below
- A native backdoor module for Microsoft IIS (Internet Information Services)☆536Updated 4 years ago
- Shellcode wrapper with encryption for multiple target languages☆434Updated 8 years ago
- A script to randomize Cobalt Strike Malleable C2 profiles and reduce the chances of flagging signature-based detection controls☆435Updated 2 years ago
- Code from this article: https://blog.rapid7.com/2018/05/03/hiding-metasploit-shellcode-to-evade-windows-defender/☆171Updated 4 years ago
- CVE-2020-0683 - Windows MSI “Installer service” Elevation of Privilege☆340Updated 3 years ago
- Cobalt Strike Python API☆296Updated 3 years ago
- Convert Cobalt Strike profiles to modrewrite scripts☆589Updated 2 years ago
- Windows - Weaponizing privileged file writes with the Update Session Orchestrator service☆382Updated 4 years ago
- cve-2020-0688☆322Updated last year
- The idea is to collect all the C# projects that are Sharp{Word} that can be used in Cobalt Strike as execute assembly command.☆472Updated 2 years ago
- ☆187Updated 3 years ago
- CVE-2020-0796 Local Privilege Escalation POC☆241Updated 4 years ago
- Cobalt Strike kit for Persistence☆470Updated 5 years ago
- New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.☆921Updated 7 years ago
- Ps-Tools, an advanced process monitoring toolkit for offensive operations☆334Updated 4 years ago
- Exploit Code for CVE-2020-1472 aka Zerologon☆382Updated 4 years ago
- ☆350Updated 2 years ago
- We developed GRAT2 Command & Control (C2) project for learning purpose.☆413Updated 4 years ago
- Aggressor scripts for use with Cobalt Strike 3.0+☆810Updated 2 years ago
- Custom Metasploit post module to executing a .NET Assembly from Meterpreter session☆341Updated 4 years ago
- Obfuscate powershell scripts by replacing Function names, Variables and Parameters.☆512Updated 2 years ago
- RottenPotato local privilege escalation from service account to SYSTEM☆654Updated 7 years ago
- Exploit for the RpcEptMapper registry key permissions vulnerability (Windows 7 / 2088R2 / 8 / 2012)☆412Updated 3 years ago
- Tool to create hidden registry keys.☆474Updated 5 years ago
- Aggressor scripts I've made for Cobalt Strike☆403Updated last year
- ntlm relay attack to Exchange Web Services☆329Updated 7 years ago
- Some useful scripts for CobaltStrike☆845Updated 4 years ago
- This is a PowerShell Empire launcher PoC using PrintDemon and Faxhell.☆199Updated 4 years ago
- Exchange your privileges for Domain Admin privs by abusing Exchange☆994Updated 5 years ago
- Process Injection☆754Updated 3 years ago