khr0x40sh / WhiteListEvasionLinks
Collection of scripts, binaries and the like to aid in WhiteList Evasion on a Microsoft Windows Network.
☆128Updated 10 years ago
Alternatives and similar repositories for WhiteListEvasion
Users that are interested in WhiteListEvasion are comparing it to the libraries listed below
Sorting:
- ☆210Updated 6 years ago
- Lateral Movement technique using DCOM and HTA☆232Updated 2 years ago
- A library for integrating communication channels with the Cobalt Strike External C2 server☆285Updated 7 years ago
- POC for Cobalt Strike external C2☆137Updated 3 years ago
- Python api for usage with cobalt strike's External C2 specification☆242Updated 2 years ago
- Example DLL to load from Windows NetShell☆182Updated 8 years ago
- Malleable C2 profiles for Cobalt Strike☆74Updated 2 years ago
- The PowerThIEf, an Internet Explorer Post Exploitation library☆130Updated 6 months ago
- Constrained Language Mode + AMSI bypass all in one☆159Updated 6 years ago
- A collection of useful scripts for Cobalt Strike☆173Updated last year
- CobaltStrike External C2 for Websockets☆197Updated 6 years ago
- A C# implementation of PrivExchange by @_dirkjan.☆156Updated 6 years ago
- Cobalt Strike Aggressor script menu for Powerview/SharpView☆132Updated 7 years ago
- Collection of Aggressor Scripts for Cobalt Strike☆172Updated 7 years ago
- Aggressor scripts for phases of a pen test or red team assessment☆183Updated last year
- A tool to run .Net DLLs from the command line☆101Updated 6 years ago
- Various Aggressor Scripts I've Created.☆150Updated 3 years ago
- Cobalt Strike SCT payload obfuscator☆143Updated 8 years ago
- ☆187Updated 4 years ago
- Aggregation of Cobalt Strike's aggressor scripts.☆142Updated 7 years ago
- Trigen is a Python script which uses different combinations of Win32 function calls in generated VBA to execute shellcode.☆204Updated 8 years ago
- CSHARP DCOM Fun☆134Updated 5 years ago
- Code from this article: https://blog.rapid7.com/2018/05/03/hiding-metasploit-shellcode-to-evade-windows-defender/☆174Updated 5 years ago
- Check if MS-RPRN is remotely available with powershell/c#☆173Updated 6 years ago
- initial commit☆174Updated 7 years ago
- Cobalt Strike Python API☆299Updated 3 years ago
- ☆83Updated 8 years ago
- WMI Event Subscription Persistence in C#☆113Updated 6 years ago
- Evading WinDefender ATP credential-theft☆255Updated 5 years ago
- Cobalt Strike Aggressor extension for Visual Studio Code☆135Updated last year