dmchell / Sniper
A simple proof of concept for detecting use of Cobalt Strike's execute-assembly
☆57Updated 2 years ago
Related projects: ⓘ
- D/Invoke port of UrbanBishop☆29Updated 3 years ago
- aggressor and pycobalt scripts.☆18Updated 3 years ago
- Timestomping module: overwrite file create/modify times in .NET (no pinvoke)☆22Updated 2 years ago
- ☆51Updated 3 years ago
- Zoom Persistence Aggressor and Handler☆53Updated 3 years ago
- A script that can be deployed to Azure App for C2 / Proxy / Redirector☆35Updated 5 years ago
- Simple .NET assembly to interact with services.☆38Updated 4 years ago
- ☆42Updated this week
- MiniDumpWriteDump behavior modification hook☆49Updated 3 years ago
- ☆23Updated this week
- Aggressor Script to Execute Assemblies from Github☆66Updated 3 years ago
- GhostLoader - AppDomainManager - Injection - 攻壳机动队☆50Updated 4 years ago
- ☆90Updated 2 years ago
- ☆18Updated this week
- C# port of LogServiceCrash☆45Updated 3 years ago
- AMSI Bypass Via the Heap☆105Updated 3 years ago
- Automation Engine using the Covenant API and lua scripting☆24Updated last year
- Generate Apache mod_rewrite rules for Mythic C2 profiles☆26Updated 3 years ago
- A C# tool to send emails through Outlook from the command line or in memory☆26Updated 4 years ago
- Code samples of .NET shellcode injections, weaponized for use via WebDav and mshta.exe.☆39Updated 4 years ago
- F# Implementation to spawn shellcode☆47Updated 6 years ago
- C# POC code for the SessionEnv dll hijack by utilizing called functions of TSMSISrv.dll☆58Updated 5 years ago
- A BOF to interact with COM objects associated with the Windows software firewall.☆100Updated 2 years ago
- Demos of Donut used in conferences, etc. Mostly for my use, but free for others to use as a reference.☆30Updated 4 years ago
- ☆53Updated 2 years ago
- ☆52Updated 3 years ago
- Credential Dumper☆74Updated 4 years ago
- ☆18Updated this week
- Extended Process List (Search functionality)☆27Updated 3 years ago
- ☆51Updated 3 years ago