lleon1435 / BypassAV
This map lists the essential techniques to bypass anti-virus and EDR
☆15Updated last year
Alternatives and similar repositories for BypassAV:
Users that are interested in BypassAV are comparing it to the libraries listed below
- ☆15Updated last year
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆56Updated last year
- A repository with my code snippets for research/education purposes.☆50Updated last year
- SANS Workshop: Active Directory Privilege Escalation with Empire!☆29Updated last month
- Launches a limited shell using PowerShell Runspaces with an optional AMSI Bypass. Does not invoke Powershell.exe☆13Updated last year
- Situational Awareness script to identify how and where to run implants☆49Updated 5 months ago
- Scripts I use to deploy Havoc on Linode and setup categorization and SSL☆40Updated 11 months ago
- Items related to the RedELK workshop given at security conferences☆29Updated last year
- Small Script that permits to enumerate folders in Windows Defender Exclusion List with no Administrative privileges☆22Updated 5 months ago
- ☆51Updated last year
- Scripts that automate portions of pentests.☆50Updated last week
- A small red team course☆37Updated last year
- Cobalt Strike BOFS☆16Updated last year
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated 11 months ago
- This repository contains scripts about ACL abuse and any other active directory attacking methods.☆35Updated last year
- A Moodle Scanner☆40Updated 5 months ago
- ☆14Updated last year
- Lifetime AMSI bypass.☆34Updated 2 weeks ago
- A lightweight HTTP/HTTPS reverse proxy for efficient, policy-based traffic filtering and redirection.☆45Updated last year
- GetSystem-LCI is a PowerShell script to escalate privileges from Administrator to NT AUTHORITY\SYSTEM by abusing LanguageComponentsInstal…☆34Updated 5 months ago
- Brief writeup of post exploitation methodologies.☆18Updated last year
- Discord C2 Profile for Mythic☆28Updated 2 months ago
- ☆11Updated 5 months ago
- Various AD tools needed for penetration testing in one place.☆24Updated last year
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆47Updated last year
- Create PDFs with HTML smuggling attachments that save on opening the document.☆29Updated last year
- Dumping LSASS Evaded Endpoint Security Solutions☆12Updated 2 months ago
- IAT Unhooking proof-of-concept☆29Updated last year
- Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Serv…☆25Updated last year
- Automatically extract and decrypt all configured scanning credentials of a Lansweeper instance.☆37Updated 5 months ago