mdsecactivebreach / RegistryStrikesBack
☆52Updated 4 years ago
Alternatives and similar repositories for RegistryStrikesBack:
Users that are interested in RegistryStrikesBack are comparing it to the libraries listed below
- Service Enumeration C# .NET Assembly☆60Updated 3 years ago
- D/Invoke port of UrbanBishop☆29Updated 4 years ago
- A simple proof of concept for detecting use of Cobalt Strike's execute-assembly☆60Updated 2 years ago
- This is a 64 bit VBA implementation of Christophe Tafani-Dereeper's original VBA code described in his blog @ https://blog.christophetd.f…☆20Updated 5 years ago
- Microsoft Applocker evasion tool☆38Updated 5 years ago
- Zoom Persistence Aggressor and Handler☆54Updated 3 years ago
- aggressor and pycobalt scripts.☆18Updated 4 years ago
- ☆37Updated 3 years ago
- Add SD for controlled computer object to a target object for RBCD using LDAP☆38Updated 3 years ago
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆34Updated 3 years ago
- Scripts to automate standing up apache2 with mod_rewrite in front of C2 servers.☆46Updated 4 years ago
- ☆45Updated 3 years ago
- A script that can be deployed to Azure App for C2 / Proxy / Redirector☆36Updated 5 years ago
- Ansible role to install Cobalt Strike and optionally configure as Teamserver☆32Updated 4 years ago
- C# port of LogServiceCrash☆47Updated 4 years ago
- A more obfuscated CactusTorch targeted towards office☆32Updated 4 years ago
- Code samples of .NET shellcode injections, weaponized for use via WebDav and mshta.exe.☆37Updated 5 years ago
- Get or remove RunMRU values☆54Updated 5 years ago
- ☆39Updated 6 years ago
- Helper script for mangling CS payloads☆52Updated 5 years ago
- C# POC code for the SessionEnv dll hijack by utilizing called functions of TSMSISrv.dll☆58Updated 5 years ago
- Cobalt Strike Aggressor script menu for Powerview/SharpView☆28Updated 5 years ago
- A technique for Active Directory domain persistence☆39Updated last year
- MiniDumpWriteDump behavior modification hook☆50Updated 4 years ago
- My musings with C#☆28Updated 2 years ago
- SharpSvc is a simple code set to interact with the SC Manager API and is compatible with Cobalt Strike.☆25Updated last year
- Iterative AD discovery toolkit for offensive operations☆86Updated 5 years ago
- Execute Mimikatz with different technique☆51Updated 3 years ago
- A little scanner to check the LDAP Signing state☆46Updated 3 years ago
- Exchangelib wrapper for pentesting☆60Updated last month