Bring your own print driver privilege escalation tool
☆264Aug 5, 2021Updated 5 years ago
Alternatives and similar repositories for concealed_position
Users that are interested in concealed_position are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆100Aug 23, 2021Updated 5 years ago
- C# tool for installing a shared network printer abusing the PrinterNightmare bug to allow other network machines easy privesc!☆181Aug 4, 2021Updated 5 years ago
- all credits go to @mgeeky☆65Oct 14, 2021Updated 4 years ago
- A simple COM server which provides a component to run shellcode☆142May 12, 2020Updated 6 years ago
- Tool for interacting with outlook interop during red team engagements☆145Jun 29, 2021Updated 5 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A shellcode function to encrypt a running process image when sleeping.☆337Sep 11, 2021Updated 5 years ago
- LoadLibrary for offensive operations☆31Dec 14, 2021Updated 4 years ago
- A Cobalt Strike Beacon Object File (BOF) project which uses direct system calls to enumerate processes for specific loaded modules or pro…☆273May 3, 2023Updated 3 years ago
- Dump the memory of a PPL with a userland exploit☆889Jul 24, 2022Updated 4 years ago
- credential dump using foreshaw technique using SeTrustedCredmanAccessPrivilege☆125May 22, 2021Updated 5 years ago
- LittleCorporal: A C# Automated Maldoc Generator☆226Jul 30, 2021Updated 5 years ago
- You shall pass☆271Jul 16, 2022Updated 4 years ago
- C++ WinRM API via Reflective DLL☆144Sep 11, 2021Updated 5 years ago
- ☆180Feb 3, 2021Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.☆296Aug 18, 2023Updated 3 years ago
- Cobalt Strike BOF that spawns a sacrificial process, injects it with shellcode, and executes payload. Built to evade EDR/UserLand hooks b…☆464Mar 8, 2023Updated 3 years ago
- OffensivePH - use old Process Hacker driver to bypass several user-mode access controls☆331Oct 9, 2021Updated 4 years ago
- Another LSASS dumping tool that uses a dynamically compiled LSA plugin to grab an lsass handle and API hooking for capturing the dump in…☆272Mar 18, 2021Updated 5 years ago
- Assembly HellGate implementation that directly calls Windows System Calls and displays the PPID of the explorer.exe process☆107Mar 8, 2023Updated 3 years ago
- LiquidSnake is a tool that allows operators to perform fileless lateral movement using WMI Event Subscriptions and GadgetToJScript☆350Sep 1, 2021Updated 5 years ago
- A demo of the relevant blog post: https://www.arashparsa.com/hook-heaps-and-live-free/☆192Sep 9, 2021Updated 5 years ago
- SharpHook is an offensive API hooking tool designed to catch various credentials within the API call.☆321Jul 1, 2021Updated 5 years ago
- Windows Privilege Escalation from User to Domain Admin.☆1,470Dec 18, 2022Updated 3 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Move CS beacon to GPU memory when sleeping☆249Nov 19, 2021Updated 4 years ago
- COFF and BOF Loader written in Nim☆178Apr 4, 2026Updated 5 months ago
- Project to check which Nt/Zw functions your local EDR is hooking☆201Mar 21, 2021Updated 5 years ago
- ☆154Jan 6, 2023Updated 3 years ago
- RefleXXion is a utility designed to aid in bypassing user-mode hooks utilised by AV/EPP/EDR etc. In order to bypass the user-mode hooks, …☆499Jan 25, 2022Updated 4 years ago
- Pure C++, weaponized, fully automated implementation of RottenPotatoNG☆312Sep 16, 2021Updated 5 years ago
- Inject .NET assemblies into an existing process☆509Jan 19, 2022Updated 4 years ago
- Enumerating and removing kernel callbacks using signed vulnerable drivers☆593Jan 24, 2023Updated 3 years ago
- ☆53Sep 16, 2021Updated 5 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ☆100Sep 20, 2021Updated 5 years ago
- A Beacon Object File (BOF) for Cobalt Strike which uses direct system calls to enable WDigest credential caching.☆218May 3, 2023Updated 3 years ago
- A novel technique to communicate between threads using the standard ETHREAD structure☆116Feb 27, 2021Updated 5 years ago
- Remotely enables Restricted Admin Mode☆214Sep 3, 2021Updated 5 years ago
- Exploit for the RpcEptMapper registry key permissions vulnerability (Windows 7 / 2088R2 / 8 / 2012)☆427Apr 22, 2021Updated 5 years ago
- tgtdelegation is a Beacon Object File (BOF) to obtain a usable TGT via the "TGT delegation trick"☆181Nov 26, 2021Updated 4 years ago
- SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature…☆1,291Aug 27, 2023Updated 3 years ago