ionescu007 / PrintDemon
PrintDemon is a PoC for a series of issues in the Windows Print Spooler service, as well as potetial misuses of the functionality.
☆202Updated 5 years ago
Alternatives and similar repositories for PrintDemon
Users that are interested in PrintDemon are comparing it to the libraries listed below
Sorting:
- PoC code for CVE-2019-0841 Privilege Escalation vulnerability☆240Updated 6 years ago
- Code from this article: https://blog.rapid7.com/2018/05/03/hiding-metasploit-shellcode-to-evade-windows-defender/☆175Updated 4 years ago
- CVE-2020-0796 Local Privilege Escalation POC☆241Updated 5 years ago
- A denial-of-service proof-of-concept for CVE-2020-1350☆237Updated 4 years ago
- A Bind Shell Using the Fax Service and a DLL Hijack☆330Updated 5 years ago
- Poc for CVE-2019-1253☆156Updated 3 years ago
- Lateral Movement technique using DCOM and HTA☆233Updated 2 years ago
- a tool to make it easy and fast to test various forms of injection☆173Updated 6 years ago
- ☆347Updated 3 years ago
- Bypassing NTFS permissions to read any files as unprivileged user.☆188Updated 4 years ago
- This is a PowerShell Empire launcher PoC using PrintDemon and Faxhell.☆201Updated 4 years ago
- ☆265Updated last year
- This is an exploit for CVE-2020-0674 that runs on the x64 version of IE 8, 9, 10, and 11 on Windows 7.☆224Updated 4 years ago
- Windows - Weaponizing privileged file writes with the Update Session Orchestrator service☆388Updated 4 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆257Updated 6 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆146Updated 5 years ago
- Use CLR to inject all the .NET apps☆184Updated 4 years ago
- Collection of CSharp Assemblies focused on Post-Exploitation Capabilities☆228Updated 5 years ago
- Proof of concept exploit of Windows Update Orchestrator Service Elevation of Privilege Vulnerability☆121Updated 4 years ago
- Windows 10 CDPSvc DLL Hijacking - From LOCAL SERVICE to SYSTEM☆115Updated 5 years ago
- Create a minidump of the LSASS process from memory☆260Updated 2 years ago
- ☆280Updated 4 years ago
- Trigen is a Python script which uses different combinations of Win32 function calls in generated VBA to execute shellcode.☆204Updated 7 years ago
- A meterpreter extension for applying hooks to avoid windows defender memory scans☆245Updated 4 years ago
- Shellcoding utilities☆222Updated 4 years ago
- CobaltStrike External C2 for Websockets☆193Updated 5 years ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆325Updated 6 years ago
- A library for integrating communication channels with the Cobalt Strike External C2 server☆285Updated 7 years ago
- Evading WinDefender ATP credential-theft☆255Updated 5 years ago
- The full story of the CLR implementation of Meterpreter☆150Updated 4 years ago