jconwell / secret_handshakeLinks
A prototype malware C2 channel using x509 certificates over mTLS
☆152Updated last year
Alternatives and similar repositories for secret_handshake
Users that are interested in secret_handshake are comparing it to the libraries listed below
Sorting:
- Living Off the Foreign Land setup scripts☆74Updated 11 months ago
- ☆124Updated 4 years ago
- ☆164Updated 7 months ago
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆125Updated 3 years ago
- A tool to find folders excluded from AV real-time scanning using a time oracle☆234Updated last year
- Python utility that generates "imageless" QR codes in various formats☆135Updated last year
- A tool to Impersonate logged on users without touching LSASS (Including non-Interactive sessions).☆93Updated 3 years ago
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares☆190Updated 2 years ago
- Async Python library to parse local and remote disk images.☆82Updated 6 months ago
- ☆133Updated 2 years ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆102Updated last year
- Finding secrets in kernel and user memory☆116Updated 2 years ago
- ☆225Updated 2 years ago
- WNF Code Execution Library Using C#☆111Updated 5 years ago
- C2 Automation using Linode☆85Updated 3 years ago
- ☆120Updated 2 years ago
- PowerShell Obfuscation and Data Science☆180Updated 3 years ago
- Artifact monitoring that ensures fairplay☆79Updated last year
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆93Updated 2 years ago
- pysnaffler☆110Updated 3 weeks ago
- ☆120Updated 10 months ago
- ☆144Updated 2 years ago
- Simple EDR that injects a DLL into a process to place a hook on specific Windows API☆96Updated 2 years ago
- Leak NTLM via Website tab in teams via MS Office☆78Updated last year
- ☆70Updated 2 years ago
- The most average C2 ever (MACE)☆97Updated 3 years ago
- Cortex XDR Config Extractor☆135Updated 2 years ago
- Some scripts to support with importing large datasets into BloodHound☆81Updated 2 years ago
- Red Team "Drop and Run" NAC (802.1x) Bypass☆75Updated 2 years ago
- Koppeling x Metatwin x LazySign☆215Updated 4 years ago