lkarlslund / nifo
Nuke It From Orbit - remove AV/EDR with physical access
☆258Updated 5 months ago
Alternatives and similar repositories for nifo:
Users that are interested in nifo are comparing it to the libraries listed below
- ☆186Updated last year
- A system administration or post-exploitation script to automatically extract the bitlocker recovery keys from a domain.☆367Updated 3 months ago
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆123Updated 3 months ago
- An ADCS honeypot to catch attackers in your internal network.☆288Updated 10 months ago
- MaLDAPtive is a framework for LDAP SearchFilter parsing, obfuscation, deobfuscation and detection.☆278Updated 9 months ago
- TokenSmith generates Entra ID access & refresh tokens on offensive engagements. It is suitable for both covert adversary simulations and …☆269Updated 3 months ago
- PowerShell scripts for alternative SharpHound enumeration, including users, groups, computers, and certificates, using the ActiveDirector…☆352Updated 5 months ago
- Abusing Intune for Lateral Movement over C2☆335Updated 2 months ago
- ☆213Updated last month
- ☆299Updated 6 months ago
- Evade EDR's the simple way, by not touching any of the API's they hook.☆140Updated 3 months ago
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆354Updated 4 months ago
- lolC2 is a collection of C2 frameworks that leverage legitimate services to evade detection☆202Updated last week
- ☆191Updated 7 months ago
- Tools for interacting with authentication packages using their individual message protocols☆318Updated last month
- Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domai…☆235Updated 4 months ago
- A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files☆124Updated 11 months ago
- Azure Post Exploitation Framework☆197Updated 2 months ago
- Tools for analyzing EDR agents☆228Updated 10 months ago
- A security assessment tool for analyzing Active Directory Group Policy Objects (GPOs) to identify misconfigurations and vulnerabilities☆222Updated last month
- A powerful, modular, lightweight and efficient command & control framework written in Nim.☆127Updated 2 weeks ago
- The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory C…☆250Updated last year
- .NET post-exploitation toolkit for Active Directory reconnaissance and exploitation☆371Updated last month
- Find potential DLL Sideloads on your windows computer☆203Updated 3 months ago
- A collection of tools, scripts and personal research☆128Updated last month
- Simple pure PowerShell POC to bypass Entra / Intune Compliance Conditional Access Policy☆141Updated 2 months ago
- Retired TrustedSec Capabilities☆247Updated 5 months ago
- A delicious, but malicious SSL-VPN server 🌮☆219Updated 5 months ago
- Scan vulnerable drivers on Windows with loldrivers.io☆177Updated last year
- Python implementation of GhostPack's Seatbelt situational awareness tool☆257Updated 5 months ago