g3tsyst3m / elevationstation
elevate to SYSTEM any way we can! Metasploit and PSEXEC getsystem alternative
☆347Updated last year
Alternatives and similar repositories for elevationstation:
Users that are interested in elevationstation are comparing it to the libraries listed below
- A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk☆446Updated 7 months ago
- Kill AV/EDR leveraging BYOVD attack☆341Updated last year
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆393Updated 8 months ago
- Bypassing UAC with SSPI Datagram Contexts☆428Updated last year
- Terminate AV/EDR Processes using kernel driver☆339Updated last year
- Credential Guard Bypass Via Patching Wdigest Memory☆314Updated 2 years ago
- A list of python tools to help create an OPSEC-safe Cobalt Strike profile.☆401Updated last year
- Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime☆302Updated last year
- Collection of UAC Bypass Techniques Weaponized as BOFs☆474Updated last year
- COM Hijacking VOODOO☆265Updated this week
- UAC Bypass By Abusing Kerberos Tickets☆492Updated last year
- Execute shellcode files with rundll32☆190Updated last year
- A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!☆322Updated 7 months ago
- Generate an obfuscated DLL that will disable AMSI & ETW☆317Updated 7 months ago
- Revenant - A 3rd party agent for Havoc that demonstrates evasion techniques in the context of a C2 framework☆373Updated 7 months ago
- Collection of Beacon Object Files (BOF) for Cobalt Strike☆562Updated 7 months ago
- A .NET XOR encrypted cobalt strike aggressor implementation for chisel to utilize faster proxy and advanced socks5 capabilities.☆447Updated 11 months ago
- Escalate Service Account To LocalSystem via Kerberos☆393Updated last year
- A beacon object file implementation of PoolParty Process Injection Technique.☆369Updated last year
- ☆322Updated 3 weeks ago
- Execute shellcode from a remote-hosted bin file using Winhttp.☆230Updated last year
- A BOF that runs unmanaged PEs inline☆575Updated 4 months ago
- A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.☆529Updated 2 months ago
- ☆516Updated last year
- Cobalt Strike Beacon Object File (BOF) that uses WinStationConnect API to perform local/remote RDP session hijacking.☆299Updated 2 years ago
- Weaponized HellsGate/SigFlip☆198Updated last year
- ☆271Updated last year
- Go shellcode loader that combines multiple evasion techniques☆363Updated last year
- Cobalt Strike User-Defined Reflective Loader with AV/EDR Evasion in mind☆441Updated last year
- Reduce Entropy And Obfuscate Youre Payload With Serialized Linked Lists☆417Updated last year