gatariee / locate-bof
A BOF for lazy people
☆15Updated 11 months ago
Alternatives and similar repositories for locate-bof:
Users that are interested in locate-bof are comparing it to the libraries listed below
- ☆47Updated 2 years ago
- in-process powershell runner for BRC4☆44Updated last year
- Items related to the RedELK workshop given at security conferences☆28Updated last year
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated 9 months ago
- Scripts to interact with Microsoft Graph APIs☆36Updated 4 months ago
- Python3 rewrite of AsOutsider features of AADInternals☆43Updated 3 months ago
- Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level☆25Updated 2 years ago
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆32Updated 2 years ago
- ☆20Updated 9 months ago
- ☆48Updated last year
- Secretsdump C# version only supporting local (live) operation☆49Updated last year
- PowerShell Implementation of ADFSDump to assist with GoldenSAML☆31Updated 10 months ago
- Aggressor script to automatically download and load an arsenal of open source and private Cobalt Strike tooling.☆25Updated 7 months ago
- Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged p…☆49Updated 2 years ago
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆33Updated last year
- ☆31Updated 2 months ago
- A BOF tool that can be used to collect passwords using CredUIPromptForWindowsCredentialsName.☆13Updated 2 years ago
- A VSCode devcontainer for development of COFF files with batteries included.☆47Updated last year
- ☆30Updated 2 years ago
- Example of using Sleep to create better named pipes.☆41Updated last year
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆54Updated 3 years ago
- A care package of useful bofs for red team engagments☆54Updated 3 months ago
- load dumped csharp binaries as assemblies and launch them in memory☆26Updated last year
- Minimal Windows Service Template for demonstrating privilege escalation via weak service executable permissions☆13Updated 2 years ago
- Run Cobalt Strike BOFs in Brute Ratel C4!☆63Updated 2 months ago
- Validates priv escalation of AD trusts☆35Updated 3 months ago
- Add Shadow Credentials to a target object by editing their msDS-KeyCredentialLink attribute☆20Updated 9 months ago
- Launches a limited shell using PowerShell Runspaces with an optional AMSI Bypass. Does not invoke Powershell.exe☆13Updated last year
- Extract registry and NTDS secrets from local or remote disk images☆37Updated last week
- Enumerate the Domain for Readable and Writable Shares☆17Updated last month