malcomvetter / WhoDis
An example pattern in C# for watching security events (logon/logoff/privilege)
☆17Updated 6 years ago
Alternatives and similar repositories for WhoDis:
Users that are interested in WhoDis are comparing it to the libraries listed below
- C# Implementation of Get-VaultCredential☆13Updated 6 years ago
- ☆21Updated 7 years ago
- ☆26Updated 6 years ago
- ☆28Updated 7 years ago
- Code that can be used to create/steal/manipulate token contexts in a program. Can be implemented into other C# projects.☆12Updated 6 years ago
- Quick and dirty .net console app for querying mssql servers.☆20Updated 6 years ago
- Ingests logs/dbs from cobalt and empire and outputs an excel report with activity, sessions, and credentials☆20Updated 4 years ago
- C# code to run PIC using CreateThread☆17Updated 5 years ago
- ☆25Updated 6 years ago
- ☆70Updated 6 years ago
- ☆40Updated 6 years ago
- Bash one-liner that will parse harmj0y's SharpRoast or Rebeus kerberoast into hashcat crack-able format.☆32Updated 6 years ago
- ☆41Updated 5 years ago
- Discover MSSQL Instances via UDP Scanning☆24Updated 6 years ago
- Run Managed Assemblies with RunDll☆17Updated 6 years ago
- A minimal safe version of mimikatz to only allow the export of non-exportable Windows certificates☆25Updated 6 years ago
- ☆45Updated 6 years ago
- .NET tool for enumeration processes and dumping memory.☆56Updated 5 years ago
- Inject .Net payloads into other .Net assemblies on disk☆61Updated 5 years ago
- InsecurePowerShellHost is a .NET Core host process for InsecurePowerShell, a version of PowerShell Core v6.0.0 with key security features…☆31Updated 7 years ago
- ☆76Updated 6 years ago
- PoC code from blog☆16Updated 5 years ago
- Python script to patch the reflective stub in a DLL☆24Updated 7 years ago
- Convert Empire profiles to Apache mod_rewrite scripts☆27Updated 5 years ago
- A cross-platform assistant for creating malicious MS Office documents. Can hide VBA macros, stomp VBA code (via P-Code) and confuse macro…☆19Updated 4 years ago
- Data Exfiltration via HTTP Traffic (C# and Shell Script)☆17Updated last year
- medium-rare☆28Updated 5 years ago
- Gives context to a system. Uses EQGRP shadow broker leaked list to give some descriptions to processes.☆43Updated 7 years ago
- Protect your servers with a secret header☆29Updated 4 years ago
- A PoC to show how to add code to C# and dotNet and make it reusable for Red Team operations. Maybe one day it will be the largest collect…☆17Updated 4 years ago