cinzinga / Evasion-Practice
A variety of AV evasion techniques written in C# for practice.
☆84Updated 3 years ago
Alternatives and similar repositories for Evasion-Practice:
Users that are interested in Evasion-Practice are comparing it to the libraries listed below
- ☆31Updated 3 years ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆126Updated 11 months ago
- Payload Generation Framework☆89Updated 11 months ago
- ☆113Updated last year
- PoC to coerce authentication from Windows hosts using MS-WSP☆229Updated last year
- Shellcode generation and encoding utility☆21Updated 2 years ago
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆252Updated last year
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆168Updated 2 years ago
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆81Updated 3 years ago
- Patching AmsiOpenSession by forcing an error branching☆143Updated last year
- Code dump from PEN-300/OSEP updated 2022☆40Updated 2 years ago
- AV EVASION TECHNIQUES☆76Updated 2 years ago
- SeRestorePrivilege to SYSTEM☆90Updated 3 years ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆185Updated 4 months ago
- ADCS cert template modification and ACL enumeration☆132Updated last year
- ☆159Updated 6 months ago
- OPSEC safe Kerberoasting in C#☆189Updated 2 years ago
- Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations☆151Updated 11 months ago
- ☆79Updated last year
- Tool for Active Directory Certificate Services enumeration and abuse☆107Updated 3 weeks ago
- ☆55Updated 10 months ago
- A collection of code snippets built to assist with breaking chains.☆116Updated 9 months ago
- Lateral Movement☆122Updated last year
- Simple C# implementation of PowerUpSQL☆94Updated 7 months ago
- Patch AMSI and ETW☆236Updated 9 months ago
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated 2 years ago
- Adversary Emulation Framework☆66Updated 6 months ago
- reflectively load and execute PEs locally and remotely bypassing EDR hooks☆147Updated last year
- ☆139Updated 2 years ago
- ☆192Updated 10 months ago