g4uss47 / Invoke-Mimikatz
Powershell Mimikatz Loader
☆62Updated 10 months ago
Alternatives and similar repositories for Invoke-Mimikatz:
Users that are interested in Invoke-Mimikatz are comparing it to the libraries listed below
- Local privilege escalation from SeImpersonatePrivilege using EfsRpc.☆310Updated 2 years ago
- DCSync Attack from Outside using Impacket☆112Updated 2 years ago
- Useful Cobalt Strike BOFs found or used during engagements☆138Updated last year
- ☆222Updated 10 months ago
- Dumping LSASS with a duplicated handle from custom LSA plugin☆199Updated 3 years ago
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆80Updated 3 years ago
- Attempt at Obfuscated version of SharpCollection☆205Updated last month
- GUI alternative to the Rubeus command line tool, for all your Kerberos exploit requirements☆182Updated 3 years ago
- Python tool to Check running WebClient services on multiple targets based on @leechristensen☆268Updated 3 years ago
- An all-in-one Cobalt Strike BOF to patch, check and revert AMSI and ETW for x64 process. Both syscalls and dynamic resolve versions are a…☆128Updated 2 years ago
- Precompiled executable☆44Updated 2 weeks ago
- A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.☆127Updated last year
- Pass the Hash to a named pipe for token Impersonation☆300Updated last year
- A BOF to automate common persistence tasks for red teamers☆273Updated 2 years ago
- Beacon Object File PoC implementation of KillDefender☆218Updated 2 years ago
- MSSQL Database Attacker tool☆190Updated 2 years ago
- Python implementation for PetitPotam☆195Updated 3 years ago
- MS-FSRVP coercion abuse PoC☆285Updated 3 years ago
- Bypass Detection By Randomising ROR13 API Hashes☆135Updated 3 years ago
- CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking☆225Updated last year
- Active Directory password spraying tool. Auto fetches user list and avoids potential lockouts.☆129Updated 3 years ago
- Fileless atexec, no more need for port 445☆360Updated 11 months ago
- ☆152Updated last year
- COM Hijacking VOODOO☆268Updated this week
- Porting of BOF InlineExecute-Assembly to load .NET assembly in process but with patchless AMSI and ETW bypass using hardware breakpoint.☆214Updated last year
- Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations☆152Updated last year
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆284Updated 3 months ago
- Proof-of-concept tools for my AD Forest trust research☆203Updated 9 months ago
- Use ESC1 to perform a makeshift DCSync and dump hashes☆203Updated last year
- Dumping SAM / SECURITY / SYSTEM registry hives with a Beacon Object File☆192Updated 4 years ago