darksh3llRU / dark-doh
☆19Updated last year
Alternatives and similar repositories for dark-doh:
Users that are interested in dark-doh are comparing it to the libraries listed below
- Multi-threaded C2 framework built in Flask with keylogger - from the Offensive C# Course by Naga Sai Nikhil☆21Updated 2 years ago
- ☆47Updated 2 years ago
- A tool to exchange decryption keys for command and control (C2) beacons and implants through DNS records.☆39Updated 2 years ago
- ☆30Updated 2 years ago
- ☆18Updated 5 months ago
- ☆28Updated last year
- Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level☆25Updated 2 years ago
- OSED Practice binary☆24Updated last year
- CLI Search for Security Operators of MITRE ATT&CK URLs☆16Updated 2 years ago
- Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged p…☆49Updated 2 years ago
- freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package☆33Updated last year
- Tomcat backdoor based on CS blog☆27Updated last year
- PowerShell Implementation of ADFSDump to assist with GoldenSAML☆31Updated 10 months ago
- XOR-based shellcode encoder☆31Updated last year
- Items related to the RedELK workshop given at security conferences☆28Updated last year
- ☆15Updated last year
- Check for NotProxyShell CVE-2022-40140 & CVE-2022-41082☆25Updated 2 years ago
- DFSCoerce exe revisited version with custom authentication☆38Updated last year
- Unix Process hollowing in rust☆21Updated 3 months ago
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆30Updated last year
- A simple rpc2socks alternative in pure Go.☆28Updated 8 months ago
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆39Updated last year
- WptsExtensions.dll for exploiting DLL hijacking of the task scheduler.☆53Updated 3 years ago
- Perform Windows domain enumeration via LDAP☆36Updated 2 years ago
- Analyzes AdminSDHolder permissions & compares with a previous run, to detect potential backdoor/excessive persistent permission(s)☆15Updated last year
- Docker container for running CobaltStrike 4.10☆36Updated 6 months ago
- .NET port of Leron Gray's azbelt tool.☆26Updated last year
- Rust implementation of the Process Herpaderping☆24Updated last year
- Aggressor script to automatically download and load an arsenal of open source and private Cobalt Strike tooling.☆25Updated 7 months ago
- ☆16Updated last year