Collection of C# projects. Useful for pentesting and redteaming.
☆324Oct 19, 2023Updated 2 years ago
Alternatives and similar repositories for RedCsharp
Users that are interested in RedCsharp are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- C# Script used for Red Team☆715Nov 16, 2021Updated 4 years ago
- .NET Project for performing Authenticated Remote Execution☆409Feb 8, 2023Updated 3 years ago
- ☆668Nov 17, 2021Updated 4 years ago
- A method of bypassing EDR's active projection DLL's by preventing entry point exection☆1,168Mar 31, 2021Updated 5 years ago
- Create a minidump of the LSASS process from memory☆257Nov 2, 2022Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- .Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py☆613Feb 16, 2023Updated 3 years ago
- The idea is to collect all the C# projects that are Sharp{Word} that can be used in Cobalt Strike as execute assembly command.☆482May 24, 2022Updated 4 years ago
- Porting of mimikatz sekurlsa::logonpasswords, sekurlsa::ekeys and lsadump::dcsync commands☆1,019Nov 7, 2021Updated 4 years ago
- .NET 4.0 WinRM API Command Execution☆164Sep 11, 2020Updated 6 years ago
- Get file less command execution for lateral movement.☆639Jun 3, 2022Updated 4 years ago
- A .NET Runtime for Cobalt Strike's Beacon Object Files☆784Sep 4, 2024Updated 2 years ago
- Collection of Offensive C# Tooling☆1,471Feb 6, 2023Updated 3 years ago
- .NET Project for Attacking vCenter☆558Nov 11, 2021Updated 4 years ago
- Cobalt Strike BOF that spawns a sacrificial process, injects it with shellcode, and executes payload. Built to evade EDR/UserLand hooks b…☆464Mar 8, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- TCP Port Redirection Utility☆787Jan 31, 2023Updated 3 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆875Dec 2, 2023Updated 2 years ago
- Collection of Beacon Object Files☆637Nov 1, 2022Updated 3 years ago
- .NET project for installing Persistence☆499Jun 26, 2024Updated 2 years ago
- Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS head…☆597Jul 26, 2021Updated 5 years ago
- A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts and relaying to the certifica…☆878Mar 20, 2023Updated 3 years ago
- A tool to help query AD via the LDAP protocol☆646Sep 25, 2024Updated last year
- Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure …☆2,982Jul 30, 2026Updated last month
- InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assem…☆768Jul 22, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Recon-AD, an AD recon tool based on ADSI and reflective DLL’s☆332Oct 20, 2019Updated 6 years ago
- Cobalt Strike Beacon Object Files☆167May 2, 2022Updated 4 years ago
- C# Based Universal API Unhooker☆407Feb 18, 2022Updated 4 years ago
- ☆180Feb 3, 2021Updated 5 years ago
- .NET C# Tools☆334Jan 19, 2021Updated 5 years ago
- Some usefull Scripts and Executables for Pentest & Forensics☆1,174Aug 11, 2026Updated last month
- Another LSASS dumping tool that uses a dynamically compiled LSA plugin to grab an lsass handle and API hooking for capturing the dump in…☆271Mar 18, 2021Updated 5 years ago
- Retrieves exported functions from a legitimate DLL and generates a proxy DLL source code/template for DLL proxy loading or sideloading☆920Jul 21, 2020Updated 6 years ago
- Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.☆378Mar 8, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- c# implementation of Active Directory Integrated DNS dumping (authenticated user)☆205May 25, 2021Updated 5 years ago
- .NET assembly loader with patchless AMSI and ETW bypass☆389Apr 19, 2023Updated 3 years ago
- OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at s…☆544Sep 18, 2022Updated 4 years ago
- 利用 NTLMSSP 探测 Windows 信息☆173Aug 24, 2022Updated 4 years ago
- Proof of concept Beacon Object File (BOF) that uses static x64 syscalls to perform a complete in memory dump of a process and send that b…☆218Jul 14, 2021Updated 5 years ago
- My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+☆1,106Apr 19, 2023Updated 3 years ago
- Local Service to SYSTEM privilege escalation from Windows 7 to Windows 10 / Server 2019☆1,841Sep 4, 2024Updated 2 years ago