hlldz / Phant0m
Windows Event Log Killer
☆1,762Updated last year
Alternatives and similar repositories for Phant0m:
Users that are interested in Phant0m are comparing it to the libraries listed below
- Run PowerShell with rundll32. Bypass software restrictions.☆1,785Updated 3 years ago
- Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources☆1,488Updated last year
- Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS☆1,459Updated 6 years ago
- .NET IPv4/IPv6 machine-in-the-middle tool for penetration testers☆2,617Updated 5 months ago
- Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing…☆1,552Updated last year
- PowerShell Pass The Hash Utils☆1,525Updated 6 years ago
- The project is called Great SCT (Great Scott). Great SCT is an open source project to generate application white list bypasses. This tool…☆1,124Updated 3 years ago
- A little toolbox to play with Microsoft Kerberos in C☆1,448Updated 3 years ago
- A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.☆1,857Updated 3 weeks ago
- PowerShell Runspace Post Exploitation Toolkit☆1,530Updated 5 years ago
- ☆1,412Updated 2 years ago
- SafetyKatz is a combination of slightly modified version of @gentilkiwi's Mimikatz project and @subtee's .NET PE Loader☆1,239Updated 5 years ago
- HTA encryption tool for RedTeams☆1,372Updated 2 years ago
- Run PowerShell command without invoking powershell.exe☆1,486Updated last year
- SharpSploit is a .NET post-exploitation library written in C#☆1,766Updated 3 years ago
- An asynchronous, collaborative post-exploitation agent powered by Python and .NET's DLR☆2,214Updated last year
- A tool to create a JScript file which loads a .NET v2 assembly from memory.☆1,251Updated 3 years ago
- Hide your Powershell script in plain sight. Bypass all Powershell security features☆1,126Updated 5 years ago
- ☆1,433Updated last year
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆1,439Updated last year
- Cmd.exe Command Obfuscation Generator & Detection Test Harness☆837Updated 6 years ago
- Extract credentials from lsass remotely☆2,079Updated 2 weeks ago
- LSASS memory dumper using direct system calls and API unhooking.☆1,501Updated 4 years ago
- A tool to elevate privilege with Windows Tokens☆1,028Updated last year
- SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, Supe…☆1,242Updated 2 years ago
- CACTUSTORCH: Payload Generation for Adversary Simulations☆998Updated 6 years ago
- Various PowerShell scripts that may be useful during red team exercise☆937Updated 2 years ago
- A post exploitation framework designed to operate covertly on heavily monitored environments☆2,067Updated 3 years ago
- ☆2,036Updated last year
- Enumerate missing KBs and suggest exploits for useful Privilege Escalation vulnerabilities☆1,563Updated 4 years ago