☆53Apr 17, 2026Updated 3 months ago
Alternatives and similar repositories for PhantomRPC
Users that are interested in PhantomRPC are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- test☆108Apr 25, 2026Updated 3 months ago
- DSCourier is a proof-of-concept that uses the WinGet Configuration COM API to apply DSC configurations through Microsoft-signed binaries.☆210Jun 25, 2026Updated last month
- Exploitation of CVE-2025-29969☆68Feb 20, 2026Updated 5 months ago
- BOF POC of the DSCourier project / invoking WinGet via COM☆90Apr 23, 2026Updated 3 months ago
- A credential extraction BOF for Veeam Backup and Replication and Veeam One☆79Jul 1, 2026Updated last month
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Code and data for our paper "Onelogon: Taking over Active Directory Accounts via Netlogon" (WOOT’26).☆117Jun 22, 2026Updated last month
- ☆29Feb 11, 2026Updated 5 months ago
- Okta Data Collector for BloodHound Community☆15Apr 21, 2026Updated 3 months ago
- ☆58Jul 12, 2026Updated 3 weeks ago
- COM Windows Persistence Technique☆90Apr 27, 2026Updated 3 months ago
- .NET tool used to enrich RPC telemetry☆103Jan 24, 2026Updated 6 months ago
- Lateral movement with DCOM DLL hijacking☆182Jul 4, 2025Updated last year
- CVE-2025-59501 POC code☆25Nov 20, 2025Updated 8 months ago
- A practical client for ADWS in Golang.☆55Jun 26, 2026Updated last month
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆62Feb 12, 2026Updated 5 months ago
- Lateral Movement Bof with MSI ODBC Driver Install☆173Sep 30, 2025Updated 10 months ago
- Shellcode injection using the Windows Debugging API☆183Jan 4, 2026Updated 6 months ago
- Another new coercion primitive with LPE - machine-account NTLM coercion from a non-admin user via Windows Store InstallService plugin res…☆87Jun 20, 2026Updated last month
- Example of call stack spoofing trough the construction of syntetic frames and stack manipulation☆37Jan 17, 2026Updated 6 months ago
- Native C++ access to Active Directory over ADWS, no .NET, no WCF, no HTTP stack.☆82Mar 27, 2026Updated 4 months ago
- The PoC for CVE-2025-70795 / CVE-2026-0828 and updated driver☆49Mar 13, 2026Updated 4 months ago
- Havoc BOF implementation of BYOVD attack to terminate PPL-protected EDR processes using a signed Microsoft kernel driver.☆40Apr 6, 2026Updated 3 months ago
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 3 months ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Memory API proxy via signed mozglue.dll☆40Jun 25, 2026Updated last month
- A sleepmask based on Ekko that preserves unwind data at sleep time.☆56Mar 30, 2026Updated 4 months ago
- Cobaltstrike UDRL with memory evasion☆15May 16, 2024Updated 2 years ago
- A C# tool for extracting information from SCCM PXE boot media.☆57May 21, 2026Updated 2 months ago
- Set of PoC to abuse Windows minifilters functionality☆94May 1, 2026Updated 3 months ago
- Next-Generation BOF Template | BOF Linter | Obj Rewriter☆60Dec 4, 2025Updated 7 months ago
- BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)☆219Feb 6, 2025Updated last year
- A compiled language for Windows position-independent x86-64 shellcode and Beacon Object Files.☆176Jun 28, 2026Updated last month
- Dump LSASS via physical memory read primitives in vulnerable kernel drivers☆35Jul 23, 2026Updated last week
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆88Apr 8, 2026Updated 3 months ago
- ☆23Jan 15, 2025Updated last year
- ☆50Jul 9, 2025Updated last year
- Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)☆107Apr 4, 2026Updated 3 months ago
- DCOM in memory and fileless lateral movement techniques through .Net deserilization☆280Jun 22, 2026Updated last month
- Modify machine code in binaries with alternative x64 assembly opcodes for AV evasion☆231Jul 7, 2026Updated 3 weeks ago
- A Beacon Object File (BOF) that talks directly to Windows authentication packages through the LSA untrusted/trusted client interface, wit…☆297Feb 21, 2026Updated 5 months ago