blackmassgroup / Black-Mass_v2
Files related to works published in Black Mass
☆10Updated last year
Alternatives and similar repositories for Black-Mass_v2:
Users that are interested in Black-Mass_v2 are comparing it to the libraries listed below
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago
- BypassIT is a framework for covert malware delivery and post-exploitation using AutoIT for red / blue team self assessment.☆35Updated 3 months ago
- Mythic C2 wrapper for NimSyscallPacker☆24Updated last month
- Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level☆26Updated 2 years ago
- Detect userland hooks placed by AV/EDR☆27Updated last year
- IAT Unhooking proof-of-concept☆29Updated last year
- MITRE TTPs derived from Conti's leaked playbooks from XSS.IS☆37Updated 3 years ago
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆52Updated 11 months ago
- Create PDFs with HTML smuggling attachments that save on opening the document.☆29Updated last year
- This repo hosts a poc of how to execute F# code within an unmanaged process☆66Updated 10 months ago
- Token Elevation to authorized user as SYSTEM or Domain Admins☆23Updated last year
- Collection of shellcode injection techniques packed in a D/Invoke weaponized DLL☆21Updated 2 years ago
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated last year
- PowerSploit - A PowerShell Post-Exploitation Framework☆42Updated last month
- Situational Awareness script to identify how and where to run implants☆50Updated 4 months ago
- A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.☆39Updated 2 years ago
- A pure C version of SymProcAddress☆27Updated last year
- malleable profile generator GUI for Havoc☆55Updated last year
- ☆37Updated last year
- This repository focuses on replicating the behavioral patterns observed in well-documented APT campaigns.☆11Updated 3 weeks ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆55Updated 2 years ago
- ☆59Updated last year
- Work in progress experiments with reverse shells, AV bypass and extraction of secrets from memory in C☆39Updated 5 years ago
- ☆22Updated last year
- ☆34Updated 3 weeks ago
- Python module for running BOFs☆70Updated last year
- ☆54Updated 6 months ago
- ☆27Updated last year
- ☆48Updated last year
- Deathstar is an Empire plugin that automates gaining Domain and/or Enterprise Admin rights in Active Directory environments using common …☆18Updated last month