claissg / remote_amsi_bypass
Kill AMSI in a remote process PoC
☆10Updated 6 years ago
Alternatives and similar repositories for remote_amsi_bypass
Users that are interested in remote_amsi_bypass are comparing it to the libraries listed below
Sorting:
- ☆54Updated 6 years ago
- Bypass AMSI and Executing PowerShell scripts from C# - using CyberArk's method to bypass AMSI☆31Updated 5 years ago
- Code that can be used to create/steal/manipulate token contexts in a program. Can be implemented into other C# projects.☆12Updated 6 years ago
- ☆11Updated 6 years ago
- ☆45Updated 6 years ago
- C# Implementation of Get-VaultCredential☆13Updated 6 years ago
- CobaltStrike Aggressor Script to utilise FuzzySec's Windows Notification Framework Research to Spawn a Shell under Explorer.exe☆16Updated 5 years ago
- Proof of concept of VMSA-2017-0012☆41Updated 7 years ago
- C# DCOM Execution☆18Updated 5 years ago
- A minimal safe version of mimikatz to only allow the export of non-exportable Windows certificates☆25Updated 6 years ago
- ☆28Updated 7 years ago
- My musings with C#☆28Updated 2 years ago
- InsecurePowerShellHost is a .NET Core host process for InsecurePowerShell, a version of PowerShell Core v6.0.0 with key security features…☆31Updated 7 years ago
- POC code to crash Windows Event Logger Service☆26Updated 4 years ago
- C# Implementation of Get-VaultCredential☆14Updated 6 years ago
- Encrypted Shellcode Loader Generator☆22Updated 6 years ago
- Quick and dirty .net console app for querying mssql servers.☆20Updated 6 years ago
- Source code in Win32 ASM and C for a shellcode execution wrapper designed to mitigate the risk of shellcode execution on a host other tha…☆19Updated 9 years ago
- Python script to patch the reflective stub in a DLL☆24Updated 8 years ago
- ☆36Updated 6 years ago
- Experiments on the Windows Internals☆30Updated 5 years ago
- A VBA implementation of the RunPE technique or how to bypass application whitelisting.☆14Updated 6 years ago
- Playing around with token manipulation in C#.☆28Updated 5 years ago
- CreateProcessAsUser experiments☆6Updated 9 years ago
- ☆14Updated 5 years ago
- ☆25Updated 6 years ago
- Run Managed Assemblies with RunDll☆17Updated 6 years ago
- The source code of the SLAE assignments documented at https://rastating.github.io/☆23Updated 6 years ago
- Sound Research SECOMN service Privilege Escalation (windows 10)☆40Updated 5 years ago
- ☆18Updated 3 years ago