claissg / remote_amsi_bypass
Kill AMSI in a remote process PoC
☆10Updated 6 years ago
Related projects ⓘ
Alternatives and complementary repositories for remote_amsi_bypass
- ☆54Updated 6 years ago
- Bypass AMSI and Executing PowerShell scripts from C# - using CyberArk's method to bypass AMSI☆29Updated 4 years ago
- ☆11Updated 5 years ago
- C# DCOM Execution☆18Updated 5 years ago
- CobaltStrike Aggressor Script to utilise FuzzySec's Windows Notification Framework Research to Spawn a Shell under Explorer.exe☆15Updated 5 years ago
- Proof of concept of VMSA-2017-0012☆41Updated 7 years ago
- Code that can be used to create/steal/manipulate token contexts in a program. Can be implemented into other C# projects.☆13Updated 5 years ago
- Encrypted Shellcode Loader Generator☆22Updated 5 years ago
- Miscellaneous C-Sharp projects for red team activities☆24Updated 2 years ago
- Sound Research SECOMN service Privilege Escalation (windows 10)☆39Updated 4 years ago
- A minimal safe version of mimikatz to only allow the export of non-exportable Windows certificates☆25Updated 6 years ago
- C# Implementation of Get-VaultCredential☆13Updated 6 years ago
- The source code of the SLAE assignments documented at https://rastating.github.io/☆23Updated 6 years ago
- This tool is designed to simplify and automate the extraction and organization of useful data from Cobalt Strike logs.☆17Updated 5 years ago
- Installs And Executes Shellcode☆11Updated 9 years ago
- A repo to hold any bypasses I work on/study/whatever☆18Updated 3 years ago
- ☆45Updated 6 years ago
- Windows Shellcode Testing Utility to Run Shellcode From A File☆11Updated 4 years ago
- InsecurePowerShellHost is a .NET Core host process for InsecurePowerShell, a version of PowerShell Core v6.0.0 with key security features…☆30Updated 6 years ago
- SharpSploit is a .NET post-exploitation library written in C#☆16Updated 4 years ago
- Retrieve the IIS Application Pool Credentials. Relies on the WebAdministration PowerShell Module.☆13Updated 6 years ago
- IIS Handler for *.ps1 files☆9Updated 4 years ago
- Simple skeleton for a CPP DLL☆22Updated 4 years ago
- A VBA implementation of the RunPE technique or how to bypass application whitelisting.☆13Updated 5 years ago
- ☆14Updated 5 years ago