POC Highlighting Obfuscation Techniques used by FIN threat actors based on cmd.exe's replace functionality and cmd.exe/powershell.exe's stdin command invocation capabilities
☆108Jul 2, 2017Updated 9 years ago
Alternatives and similar repositories for Out-FINcodedCommand
Users that are interested in Out-FINcodedCommand are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Generates anti-sandbox analysis HTA files without payloads☆123Mar 16, 2017Updated 9 years ago
- Gives context to a system. Uses EQGRP shadow broker leaked list to give some descriptions to processes.☆48Jun 5, 2017Updated 9 years ago
- ObfuscatedEmpire is a fork of Empire with Invoke-Obfuscation integrated directly into it's functionality.☆232Nov 17, 2017Updated 8 years ago
- PowerShell Remote Download Cradle Generator & Obfuscator☆854Mar 23, 2018Updated 8 years ago
- PowerShell Scripts focused on Post-Exploitation Capabilities☆322Dec 29, 2017Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Remote Recon and Collection☆461Nov 23, 2017Updated 8 years ago
- morphHTA - Morphing Cobalt Strike's evil.HTA☆531Apr 14, 2023Updated 3 years ago
- IR-Tools - PowerShell tools for IR☆130Jul 10, 2017Updated 9 years ago
- Powershell MS Outlook enumeration and phishing tool☆77May 26, 2016Updated 10 years ago
- A collection of PowerShell Modules for BloodHound/Empire Orchestration☆109Sep 26, 2017Updated 8 years ago
- In case you didn't now how to restore the user password after a password reset (get the previous hash with DCSync)☆172Jun 8, 2017Updated 9 years ago
- PowerDNS: Powershell DNS Delivery☆218Sep 26, 2018Updated 7 years ago
- GoFetch is a tool to automatically exercise an attack plan generated by the BloodHound application.☆633Jun 20, 2017Updated 9 years ago
- A JavaScript and VBScript Based Empire Launcher, which runs within their own embedded PowerShell Host.☆321Jun 5, 2017Updated 9 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Cobalt Strike SCT payload obfuscator☆144Jul 7, 2017Updated 9 years ago
- DefCon24☆122Sep 2, 2016Updated 9 years ago
- Collection of PowerShell scripts☆451Dec 18, 2017Updated 8 years ago
- Cmd.exe Command Obfuscation Generator & Detection Test Harness☆948Mar 27, 2018Updated 8 years ago
- \ PowerAvails Powershell /☆10Jun 30, 2018Updated 8 years ago
- CScriptShell, a Powershell Host running within cscript.exe☆163Apr 11, 2017Updated 9 years ago
- Python script to decode common encoded PowerShell scripts☆216Jun 13, 2018Updated 8 years ago
- A collection of files for adding and leveraging custom properties in BloodHound.☆185Nov 28, 2019Updated 6 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆88Oct 6, 2017Updated 8 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A ton of helpful tools☆346Oct 8, 2021Updated 4 years ago
- Various Cheat Sheets☆183Jun 24, 2021Updated 5 years ago
- PowerShell Obfuscation Detection Framework☆752Dec 1, 2023Updated 2 years ago
- RedSnarf is a pen-testing / red-teaming tool for Windows environments☆1,216Sep 14, 2020Updated 5 years ago
- This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported …☆863Jun 25, 2024Updated 2 years ago
- ☆98Mar 16, 2016Updated 10 years ago
- Tater is a PowerShell implementation of the Hot Potato Windows Privilege Escalation exploit from @breenmachine and @foxglovesec☆455Apr 22, 2016Updated 10 years ago
- Open Source Office Malware Generation & Polymorphic Engine for Red Teams and QA testing☆95Apr 5, 2017Updated 9 years ago
- Some PowerShell Stuff☆279Jun 15, 2022Updated 4 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- OFFICE DDEAUTO Payload Generation script☆127Dec 19, 2020Updated 5 years ago
- Pypykatz agent implemented in .NET☆84Mar 15, 2019Updated 7 years ago
- A C# implementation of the PowerShell Empire Agent☆74Apr 22, 2019Updated 7 years ago
- This repo is for WMIOps, a powershell script which uses WMI for various purposes across a network.☆386Jun 25, 2024Updated 2 years ago
- The project is designed as a file resource cloner. Metadata, including digital signature, is extracted from one file and injected into a…☆373Nov 19, 2024Updated last year
- Tool written in python3 to determine where the AV signature is located in a binary/payload☆314Mar 24, 2018Updated 8 years ago
- Currently not updated for WMIEvent module...☆262Feb 23, 2016Updated 10 years ago