huntandhackett / PassiveAggression
Source code and examples for PassiveAggression
☆55Updated 10 months ago
Alternatives and similar repositories for PassiveAggression:
Users that are interested in PassiveAggression are comparing it to the libraries listed below
- Scripts I use to deploy Havoc on Linode and setup categorization and SSL☆40Updated 10 months ago
- ☆54Updated 2 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆90Updated 10 months ago
- Situational Awareness script to identify how and where to run implants☆49Updated 4 months ago
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated last year
- ☆54Updated 5 months ago
- Impersonate Tokens using only NTAPI functions☆54Updated 2 weeks ago
- ☆55Updated 5 months ago
- Docker container for running CobaltStrike 4.10☆37Updated 7 months ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆86Updated 9 months ago
- DFSCoerce exe revisited version with custom authentication☆38Updated last year
- Tool to aid in dumping LSASS process remotely☆38Updated 8 months ago
- Automatically extract and decrypt all configured scanning credentials of a Lansweeper instance.☆37Updated 4 months ago
- ☆50Updated 5 months ago
- A BOF to retrieve decryption keys for WhatsApp Desktop and a utility script to decrypt the databases.☆73Updated last month
- Launches a limited shell using PowerShell Runspaces with an optional AMSI Bypass. Does not invoke Powershell.exe☆13Updated last year
- TokenCert☆95Updated 5 months ago
- ☆41Updated last week
- ☆65Updated last year
- A Python based tool to convert custom queries from Legacy BloodHound to BloodHound CE format, with the option to directly upload them to …☆25Updated 3 months ago
- Enumerate information from NTLM authentication enabled web endpoints 🔎☆35Updated last year
- Lifetime AMSI bypass.☆35Updated 9 months ago
- in-process powershell runner for BRC4☆45Updated last year
- Lateral Movement☆122Updated last year
- GetSystem-LCI is a PowerShell script to escalate privileges from Administrator to NT AUTHORITY\SYSTEM by abusing LanguageComponentsInstal…☆34Updated 4 months ago
- Work, timer, and wait callback example using solely Native Windows APIs.☆87Updated last year
- Duplicate not owned Token from Running Process☆72Updated last year
- Sniffing files generator☆54Updated last month
- ☆37Updated last month
- Microsoft Graph API post-exploitation toolkit☆94Updated 9 months ago