jeanlucdupont / EXEfromCERLinks
PoC that downloads an executable from a public SSL certificate
☆131Updated 3 months ago
Alternatives and similar repositories for EXEfromCER
Users that are interested in EXEfromCER are comparing it to the libraries listed below
Sorting:
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆87Updated 8 months ago
- Convert your shellcode into an ASCII string☆124Updated 4 months ago
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆148Updated last year
- Adversary Emulation Framework☆125Updated 4 months ago
- Our Tips&Tricks☆126Updated 8 months ago
- Python alternative to Mimikatz lsadump::dcshadow☆155Updated 4 months ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆100Updated 7 months ago
- Tool to extract username and password of current user from PanGPA in plaintext☆88Updated 10 months ago
- Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but fo…☆104Updated 3 weeks ago
- ☆149Updated 6 months ago
- Situational Awareness script to identify how and where to run implants☆67Updated 11 months ago
- Deploy a phishing infrastructure on the fly.☆78Updated 10 months ago
- BeaconatorC2 is a framework for red teaming and adversarial emulation, providing a full-featured management interface, along with a catal…☆85Updated this week
- Permanently disable EDRs as local admin☆121Updated last month
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆136Updated last week
- ☆59Updated last year
- Two in one, patch lifetime powershell console, no more etw and amsi!☆98Updated 6 months ago
- This tool exploits Golden DMSA attack against delegated Managed Service Accounts.☆83Updated 3 months ago
- Opsec tool for finding user sessions by analyzing event log files through RPC (MS-EVEN)☆76Updated last year
- Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement☆177Updated 5 months ago
- Go collector for adding Ansible WorX and Ansible Tower attack paths to BloodHound with OpenGraph☆61Updated 3 months ago
- ☆84Updated 5 months ago
- Enumerate active EDR's on the system☆144Updated last month
- SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connecti…☆236Updated last week
- Example code samples from our ScriptBlock Smuggling Blog post☆91Updated last year
- An interactive shell to spoof some LOLBins command line☆186Updated last year
- ☆92Updated 9 months ago
- APT Emulation tool to exfiltrate sensitive .docx, .pptx, .xlsx, .pdf files☆94Updated 7 months ago
- Decrypt GlobalProtect configuration and cookie files.☆154Updated last year
- POC of GITHUB simple C2 in rust☆52Updated 3 months ago