itm4n / PerfusionLinks
Exploit for the RpcEptMapper registry key permissions vulnerability (Windows 7 / 2088R2 / 8 / 2012)
☆420Updated 4 years ago
Alternatives and similar repositories for Perfusion
Users that are interested in Perfusion are comparing it to the libraries listed below
Sorting:
- ☆520Updated 3 years ago
- PIC lsass dumper using cloned handles☆586Updated 2 years ago
- Command line interface to dump LSASS memory to disk via SilentProcessExit☆446Updated 4 years ago
- Various Cobalt Strike BOFs☆646Updated 2 years ago
- Collection of Beacon Object Files☆589Updated 2 years ago
- A .NET Runtime for Cobalt Strike's Beacon Object Files☆727Updated 8 months ago
- Cobalt Strike BOF that spawns a sacrificial process, injects it with shellcode, and executes payload. Built to evade EDR/UserLand hooks b…☆460Updated 2 years ago
- ☆358Updated 4 years ago
- Pure C++, weaponized, fully automated implementation of RottenPotatoNG☆307Updated 3 years ago
- The idea is to collect all the C# projects that are Sharp{Word} that can be used in Cobalt Strike as execute assembly command.☆477Updated 3 years ago
- Self-developed tools for Lateral Movement/Code Execution☆705Updated 3 years ago
- Bring your own print driver privilege escalation tool☆250Updated 3 years ago
- Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions☆488Updated 4 years ago
- Tool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF)☆316Updated 3 years ago
- Exploit to SYSTEM for CVE-2021-21551☆237Updated 4 years ago
- Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.☆379Updated 2 years ago
- A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.☆297Updated last year
- Cobalt Strike kit for Persistence☆475Updated 5 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆770Updated last year
- Module Stomping, No New Thread, HellsGate syscaller, UUID Shellcode Runner for x64 Windows 10!☆445Updated 2 years ago
- Skrull is a malware DRM, that prevents Automatic Sample Submission by AV/EDR and Signature Scanning from Kernel. It generates launchers t…☆457Updated 3 years ago
- Dump the memory of a PPL with a userland exploit☆873Updated 2 years ago
- Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket☆542Updated 2 years ago
- WMEye is a post exploitation tool that uses WMI Event Filter and MSBuild Execution for lateral movement☆367Updated 3 years ago
- WSuspicious - A tool to abuse insecure WSUS connections for privilege escalations☆361Updated 4 years ago
- Cobalt Strike Shellcode Generator☆655Updated 4 months ago
- ☆388Updated 4 years ago
- Executes position independent shellcode from an encrypted zip☆304Updated 4 years ago
- C# Azure Function with an HTTP trigger that generates obfuscated PowerShell snippets that break or disable AMSI for the current process.☆410Updated 9 months ago
- DLL and PowerShell script to assist with finding DLL hijacks☆336Updated 4 years ago