Lsass dumper evading (all ?) EDR detection
☆49Nov 10, 2025Updated 3 months ago
Alternatives and similar repositories for AxiomDumper
Users that are interested in AxiomDumper are comparing it to the libraries listed below
Sorting:
- .NET assembly loader with patching AMSI and ETW bypass☆31Apr 16, 2025Updated 10 months ago
- ☆13Mar 3, 2025Updated last year
- Offensive tool for fileless lateral movement on Windows networks☆26May 7, 2024Updated last year
- Regex based secret scanner for sccm deployment points sccmcontentlib$ shares. Find secrets automatically and download entire packages for…☆18Aug 13, 2025Updated 6 months ago
- Cobalt Strike BOF for evasive .NET assembly execution☆308Mar 31, 2025Updated 11 months ago
- ☆94Jan 16, 2025Updated last year
- ☆33Jan 23, 2025Updated last year
- C++ Reflective Assembly Loader☆31Mar 7, 2025Updated 11 months ago
- kernel callback removal (Bypassing EDR Detections)☆211Nov 14, 2025Updated 3 months ago
- Simple pure PowerShell POC to bypass Entra / Intune Compliance Conditional Access Policy☆167Nov 17, 2025Updated 3 months ago
- Use Rust to implement some Red Team techniques :)☆13Nov 11, 2024Updated last year
- Weaponizing DCOM for NTLM Authentication Coercions☆197Nov 4, 2025Updated 4 months ago
- This project is an AES loader for c2 shellcode☆36Jan 24, 2024Updated 2 years ago
- Bypass LSA protection using the BYODLL technique☆172Sep 21, 2024Updated last year
- .NET assembly loader with patchless AMSI and ETW bypass in Rust☆58Oct 9, 2024Updated last year
- ☆19Dec 18, 2024Updated last year
- Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#…☆339Feb 2, 2026Updated last month
- ☆30May 23, 2024Updated last year
- This is the tool to dump the LSASS process on modern Windows 11☆560Nov 1, 2025Updated 4 months ago
- Porting of NPPSPY by Grzegorz Tworek to 'man in the middle' the user logon process, and store the user's name and password in an unassumi…☆19Apr 24, 2023Updated 2 years ago
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆186Jan 17, 2026Updated last month
- Golang implement winrm client with pass the hash☆32Apr 29, 2024Updated last year
- ☆86Jan 21, 2025Updated last year
- Fileless atexec, no more need for port 445☆404Mar 28, 2024Updated last year
- Reports and POCs for CVE 2024-43570 and CVE-2024-43535☆29Jun 7, 2025Updated 8 months ago
- A professional Red Team / Pentest tool for assessing the external perimeter of a company in a complete "black box" mode (zero knowledge, …☆29Feb 15, 2026Updated 2 weeks ago
- A basic C2 framework written in C☆59Jul 7, 2024Updated last year
- A simple tool to identify WDS servers in Active Directory☆32Aug 25, 2025Updated 6 months ago
- An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface. Implementation of ligolo-ng into sliver☆27Feb 27, 2025Updated last year
- Novel Windows process injection: assembles existing open handles (process & thread), natural RWX regions, and special user APC (NtQueueAp…☆63Feb 17, 2026Updated 2 weeks ago
- A BOF to retrieve decryption keys for WhatsApp Desktop and a utility script to decrypt the databases.☆88Mar 2, 2025Updated last year
- Simulate per-process disconnection in red team environments☆113Jun 6, 2025Updated 9 months ago
- ☆126Jan 23, 2025Updated last year
- BypassCredGuard CS BOF☆51Jan 23, 2025Updated last year
- tsh多终端代理通信☆19Feb 26, 2025Updated last year
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆55Jul 1, 2023Updated 2 years ago
- Impacket pre-compiled binaries☆18Jul 31, 2023Updated 2 years ago
- Command and Control Framework using powershell implants☆36Jun 17, 2025Updated 8 months ago
- SharpCoercer is a .NET 4.8 C# tool that leverages 16 different RPC-based coercion methods to force remote Windows hosts to authenticate t…☆55Jul 13, 2025Updated 7 months ago