markuta / bw-dump
A proof-of-concept for (CVE-2023-38840) that extracts plaintext master passwords from a locked Bitwarden vault.
☆40Updated last year
Alternatives and similar repositories for bw-dump
Users that are interested in bw-dump are comparing it to the libraries listed below
Sorting:
- C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps☆139Updated 9 months ago
- A small utility to translate NTDS.dit files to SQLite format.☆73Updated last year
- Source code and examples for PassiveAggression☆60Updated 11 months ago
- Scan your computer for known vulnerable and known malicious Windows drivers using loldrivers.io☆82Updated last year
- ☆54Updated 5 months ago
- Red Team "Drop and Run" NAC (802.1x) Bypass☆72Updated last year
- PowerShell scripts to create sandboxed or vulnerable environments using HyperV and AutomatedLab☆81Updated last month
- A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.☆39Updated 2 years ago
- RDE1 (Rusty Data Exfiltrator) is client and server tool allowing auditor to extract files from DNS and HTTPS protocols written in Rust. �…☆40Updated last month
- Lifetime AMSI bypass.☆35Updated 3 weeks ago
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated 2 years ago
- Python3 utility for creating zip files that smuggle additional data for later extraction☆118Updated this week
- Spoofing desktop login applications with WinForms and WPF☆173Updated last year
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆88Updated last year
- C2 Automation using Linode☆82Updated 2 years ago
- Living Off the Foreign Land setup scripts☆68Updated 2 months ago
- POC for DLL Proxying / Hijacking☆60Updated 2 months ago
- IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then refle…☆115Updated last year
- All kinds of tiny shells☆58Updated 2 years ago
- Simple PoC Python agent to showcase Havoc C2's custom agent interface. Not operationally safe or stable. Released with accompanying blog …☆80Updated last year
- A proof-of-concept C2 channel through DuckDuckGo's image proxy service☆74Updated last year
- Two in one, patch lifetime powershell console, no more etw and amsi!☆89Updated 3 weeks ago
- Python utility that generates "imageless" QR codes in various formats☆119Updated 9 months ago
- A tool to Impersonate logged on users without touching LSASS (Including non-Interactive sessions).☆93Updated 2 years ago
- An interactive shell to spoof some LOLBins command line☆184Updated last year
- Various one-off pentesting projects written in Nim. Updates happen on a whim.☆152Updated 4 months ago
- BloodHound PowerShell client☆53Updated last month
- Fully automated windows credentials dumper, for SAM (classic passwords) and WINHELLO (pins). Requires to be run from a linux machine with…☆75Updated 6 months ago
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆52Updated last year
- ☆220Updated last year