icyguider / DumpNParse
A Combination LSASS Dumper and LSASS Parser. All Credit goes to @slyd0g and @cube0x0.
☆145Updated 2 years ago
Related projects: ⓘ
- Impacket is a collection of Python classes for working with network protocols.☆39Updated 2 years ago
- My CobaltStrike BOFS☆156Updated 2 years ago
- Active Directory password spraying tool. Auto fetches user list and avoids potential lockouts.☆125Updated 2 years ago
- Perform DCSync operation without mimikatz☆136Updated 2 years ago
- Bypass Detection By Randomising ROR13 API Hashes☆131Updated 2 years ago
- DCSync Attack from Outside using Impacket☆109Updated 2 years ago
- Pass the Hash to a named pipe for token Impersonation☆140Updated 3 years ago
- C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection☆237Updated 3 years ago
- Dumping LSASS with a duplicated handle from custom LSA plugin☆194Updated 2 years ago
- This aggressor script uses a beacon's note field to indicate the health status of a beacon.☆138Updated 2 years ago
- Beacon Object File PoC implementation of KillDefender☆213Updated 2 years ago
- Cobalt Strike beacon object file implementation for trusted path UAC bypass. The target executable will be called without involving "cmd.…☆115Updated 3 years ago
- Another Go Shellcode Loader using Windows APIs☆136Updated 2 years ago
- Zipper, a CobaltStrike file and folder compression utility.☆187Updated 4 years ago
- AV/EDR evasion via direct system calls.☆98Updated 9 months ago
- c# implementation of Active Directory Integrated DNS dumping (authenticated user)☆196Updated 3 years ago
- Modular C2 framework aiming to ease post exploitation for red teamers.☆185Updated 2 years ago
- Shellcode injection POC using syscalls.☆116Updated 4 years ago
- C# version of Powermad☆152Updated 9 months ago
- Convert Cobalt Strike profiles to IIS web.config files☆109Updated 3 years ago
- ☆167Updated 3 years ago
- A Cobalt Strike Aggressor script to generate GadgetToJScript payloads☆98Updated 3 years ago
- .Net Assembly loader for the [CVE-2021-42287 - CVE-2021-42278] Scanner & Exploit noPac☆59Updated last year
- POC tools for exploring SMB over QUIC protocol☆119Updated 2 years ago
- ☆154Updated 2 years ago
- PoC for UUID shellcode execution using DInvoke☆149Updated 3 years ago
- Use to check the valid account of the Remote Desktop Protocol(Support plaintext and ntlmhash)☆161Updated 4 years ago
- ☆96Updated this week
- DLL Hijack Search Order Enumeration BOF☆140Updated 2 years ago
- Encrypting shellcode to Bypass AV☆69Updated 5 years ago