gemini-security / GithubC2
☆25Updated last year
Related projects ⓘ
Alternatives and complementary repositories for GithubC2
- Cobalt Strike BOFS☆16Updated 11 months ago
- Beacon Object Files used for Cobalt Strike☆17Updated last year
- Enumerate SSN (System Service Numbers or Syscall ID) and syscall instruction address in ntdll module by parsing the PEB of the current pr…☆18Updated 9 months ago
- ☆20Updated last year
- ☆15Updated 8 months ago
- ☆37Updated 3 weeks ago
- .NET port of Leron Gray's azbelt tool.☆26Updated last year
- Proof of Concept Exploit for CVE-2024-9465☆25Updated last month
- Docker container for running CobaltStrike 4.10☆33Updated 2 months ago
- ManageEngine ADManager Command Injection☆12Updated last year
- Extension functionality for the NightHawk operator client☆26Updated last year
- A simple rpc2socks alternative in pure Go.☆24Updated 4 months ago
- Analyzes AdminSDHolder permissions & compares with a previous run, to detect potential backdoor/excessive persistent permission(s)☆14Updated 11 months ago
- ☆50Updated 7 months ago
- ShootCutMe an .LNK file creator tool for redteamer☆14Updated last month
- RCE PoC for Empire C2 framework <5.9.3☆26Updated 8 months ago
- A remote unauthenticated DOS POC exploit that targets the authentication implementation of Havoc.☆31Updated last year
- DFSCoerce exe revisited version with custom authentication☆36Updated 10 months ago
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆42Updated 3 months ago
- Abusing Remote Windows SMB Shares for Fun and Pen Testing☆14Updated last year
- PowerShell Implementation of ADFSDump to assist with GoldenSAML☆31Updated 6 months ago
- CVE-2024-29895 PoC - Exploiting remote command execution in Cacti servers using the 1.3.X DEV branch builds☆21Updated 6 months ago
- ☆46Updated last year
- exfiltration/infiltration toolkit☆23Updated 11 months ago
- MacroExploit use in excel sheet☆20Updated last year
- Exploit for CVE-2024-5009☆14Updated 4 months ago
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆30Updated last year
- Multi-threaded C2 framework built in Flask with keylogger - from the Offensive C# Course by Naga Sai Nikhil☆20Updated 2 years ago
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆43Updated last year
- Updated Exploit - pfBlockerNG <= 2.1.4_26 Unauth RCE (CVE-2022-31814)☆23Updated 3 months ago