ly4k / PrintNightmareLinks
Python implementation for PrintNightmare (CVE-2021-1675 / CVE-2021-34527)
☆198Updated 3 years ago
Alternatives and similar repositories for PrintNightmare
Users that are interested in PrintNightmare are comparing it to the libraries listed below
Sorting:
- Python implementation for PetitPotam☆212Updated 3 years ago
- MS-FSRVP coercion abuse PoC☆298Updated 3 years ago
- Pass the Hash to a named pipe for token Impersonation☆306Updated last year
- Proof-of-concept tools for my AD Forest trust research☆223Updated last year
- Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)☆281Updated 3 years ago
- A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.☆300Updated 2 years ago
- Pure C++, weaponized, fully automated implementation of RottenPotatoNG☆310Updated 3 years ago
- C# Lsass parser☆297Updated 3 years ago
- Cobalt Strike Aggressor Script that Performs System/AV/EDR Recon☆331Updated 3 years ago
- Powershell version of SharpGPOAbuse☆85Updated 4 years ago
- PoC to coerce authentication from Windows hosts using MS-WSP☆285Updated 2 years ago
- A User Impersonation tool - via Token or Shellcode injection☆419Updated 3 years ago
- Shellcode launcher for AV bypass☆217Updated last year
- official repo for the AdHuntTool (part of the old RedTeamCSharpScripts repo)☆233Updated 3 years ago
- A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.☆131Updated last year
- Weaponizing for privileged file writes bugs with windows problem reporting☆234Updated 3 years ago
- Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus☆232Updated 3 years ago
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆229Updated last month
- Run Powershell without software restrictions.☆284Updated 4 years ago
- C# version of Powermad☆168Updated last year
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆86Updated 3 years ago
- Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.☆381Updated 2 years ago
- MSSQL Database Attacker tool☆191Updated 2 years ago
- Recovering NTLM hashes from Credential Guard☆347Updated 2 years ago
- GUI alternative to the Rubeus command line tool, for all your Kerberos exploit requirements☆185Updated 3 years ago
- Medusa is a cross-platform C2 agent compatible with Python 2.7 and 3.8, compatible with Mythic☆188Updated last month
- WMEye is a post exploitation tool that uses WMI Event Filter and MSBuild Execution for lateral movement☆369Updated 3 years ago
- Another LSASS dumping tool that uses a dynamically compiled LSA plugin to grab an lsass handle and API hooking for capturing the dump in…☆267Updated 4 years ago
- A BOF to automate common persistence tasks for red teamers☆289Updated 2 years ago
- Extendable payload obfuscation and delivery framework☆146Updated 2 years ago