lkarlslund / nifoLinks
Nuke It From Orbit - remove AV/EDR with physical access
☆259Updated 5 months ago
Alternatives and similar repositories for nifo
Users that are interested in nifo are comparing it to the libraries listed below
Sorting:
- An ADCS honeypot to catch attackers in your internal network.☆289Updated 11 months ago
- ☆188Updated last year
- MaLDAPtive is a framework for LDAP SearchFilter parsing, obfuscation, deobfuscation and detection.☆288Updated 9 months ago
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆123Updated 4 months ago
- A delicious, but malicious SSL-VPN server 🌮☆227Updated 6 months ago
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆359Updated 4 months ago
- ☆299Updated 7 months ago
- ☆218Updated 2 months ago
- lolC2 is a collection of C2 frameworks that leverage legitimate services to evade detection☆208Updated last month
- TokenSmith generates Entra ID access & refresh tokens on offensive engagements. It is suitable for both covert adversary simulations and …☆280Updated 4 months ago
- A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files☆124Updated last year
- PowerShell scripts for alternative SharpHound enumeration, including users, groups, computers, and certificates, using the ActiveDirector…☆361Updated 2 weeks ago
- Python implementation of GhostPack's Seatbelt situational awareness tool☆257Updated 6 months ago
- Tools for interacting with authentication packages using their individual message protocols☆335Updated 2 months ago
- A BloodHound collector for Microsoft Configuration Manager☆320Updated 5 months ago
- Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domai…☆237Updated 5 months ago
- Respotter is a Responder honeypot. Detect Responder in your environment as soon as it's spun up.☆195Updated 4 months ago
- ☆299Updated 2 months ago
- A repository of credential stealer formats☆217Updated 2 months ago
- Retired TrustedSec Capabilities☆246Updated 6 months ago
- Evade EDR's the simple way, by not touching any of the API's they hook.☆144Updated 4 months ago
- A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you com…☆170Updated last week
- Lab used for workshop and CTF☆239Updated last week
- ☆191Updated 8 months ago
- A collection of tools, scripts and personal research☆128Updated last month
- The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory C…☆251Updated last year
- Abusing Azure services over C2☆339Updated last week
- The CIA's Marble Framework is designed to allow for flexible and easy-to-use obfuscation when developing tools.☆291Updated last year
- StoneKeeper C2, an experimental EDR evasion framework for research purposes☆203Updated 5 months ago
- Python3 utility for creating zip files that smuggle additional data for later extraction☆190Updated 2 weeks ago