elephacking / officedumpLinks
Dump document encryption password from Office process memory
☆34Updated 2 years ago
Alternatives and similar repositories for officedump
Users that are interested in officedump are comparing it to the libraries listed below
Sorting:
- Golang implementation of @CCob's C# ThreadlessInject☆32Updated last year
- CVE-2024-40711-exp☆42Updated 7 months ago
- C# Port of LdapRelayScan☆83Updated 3 years ago
- Execute commands in other Sessions☆88Updated 10 months ago
- C# Tool to interact with MS Exchange based on MS docs☆101Updated 2 years ago
- Cobalt Strike beacon object file implementation for trusted path UAC bypass. The target executable will be called without involving "cmd.…☆136Updated 3 years ago
- A C# implementation of dumping credentials from Windows Credential Manager☆59Updated last year
- In-memory sleep encryption and heap encryption for Go applications through a shellcode function.☆39Updated last year
- ☆99Updated last year
- Winsocket for Cobalt Strike.☆98Updated last year
- Bypassing Amsi using LdrLoadDll☆44Updated 5 months ago
- Sliver agent rewritten in C++☆44Updated 9 months ago
- Indirect NT syscalls LSASS dumper.☆44Updated last year
- A C# tool to output crackable DPAPI hashes from user MasterKeys☆134Updated 8 months ago
- Cobalt Strike BOF for quser.exe implementation using Windows API☆86Updated 2 years ago
- To audit the security of read-only domain controllers☆117Updated last year
- Read the contents of MS Word Documents using Cobalt Strike's Execute-Assembly☆117Updated 8 months ago
- Modified versions of the Cobalt Strike Process Injection Kit☆95Updated last year
- Simple LSASS Dumper created using C++ as an alternative to using Mimikatz memory dumper☆55Updated last year
- Cobalt Strike (CS) Beacon Object File (BOF) foundation for kernel exploitation using CVE-2021-21551.☆83Updated 2 years ago
- ☆71Updated last year
- Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process☆44Updated 2 years ago
- Fuegoshell is a powershell oneliner generator for Windows remote shell re-using TCP 445☆46Updated last year
- C# implementation of Get-AADIntSyncCredentials from AADInternals, which extracts Azure AD Connect credentials to AD and Azure AD from AAD…☆40Updated last year
- ☆80Updated last year
- BypassCredGuard CS BOF☆41Updated 4 months ago
- SAM Dumping in C#☆48Updated 4 months ago
- Repository of scripts from my blog post on bypassing the YARA rule Windows_Trojan_CobaltStrike_f0b627fc by generating alternative shellco…☆39Updated 7 months ago
- ☆88Updated 2 years ago
- Aggressor script add-in for CobaltStrike to track file uploads☆36Updated 2 years ago