jfjallid / go-lsassLinks
Tool to aid in dumping LSASS process remotely
☆40Updated 11 months ago
Alternatives and similar repositories for go-lsass
Users that are interested in go-lsass are comparing it to the libraries listed below
Sorting:
- Extract registry and NTDS secrets from local or remote disk images☆43Updated 4 months ago
- SAM Dumping in C#☆49Updated 6 months ago
- ☆55Updated 8 months ago
- PowerShell Implementation of ADFSDump to assist with GoldenSAML☆35Updated 2 months ago
- DFSCoerce exe revisited version with custom authentication☆40Updated last year
- Validates priv escalation of AD trusts☆45Updated 3 months ago
- Beacon Object Files (BOF) for Cobalt Strike.☆31Updated 10 months ago
- Docker container for running CobaltStrike 4.10☆37Updated 9 months ago
- time-based user enum via Basic Auth in Azure against Autodiscover☆32Updated 9 months ago
- ☆24Updated 9 months ago
- Python3 rewrite of AsOutsider features of AADInternals☆50Updated 6 months ago
- .NET port of Leron Gray's azbelt tool.☆26Updated last year
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆56Updated this week
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆39Updated last year
- ☆50Updated 8 months ago
- ☆26Updated 4 months ago
- Sniffing files generator☆59Updated 4 months ago
- ☆36Updated last year
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated last year
- ☆36Updated 4 months ago
- This technique leverages PowerShell's .NET interop layer and COM automation to achieve stealthy command execution by abusing implicit typ…☆47Updated 2 months ago
- Aggressor script to automatically download and load an arsenal of open source and private Cobalt Strike tooling.☆25Updated 11 months ago
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆31Updated 4 months ago
- BOF for C2 framework☆41Updated 8 months ago
- ☆30Updated this week
- Duplicate not owned Token from Running Process☆72Updated last year
- GPOAnalyzer is a tool designed to assist in parsing domain Group Policy Object (GPO) files located in the SYSVOL directory.☆27Updated last year
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆43Updated 11 months ago
- Add Shadow Credentials to a target object by editing their msDS-KeyCredentialLink attribute☆23Updated last year
- Scripts to interact with Microsoft Graph APIs☆43Updated 8 months ago