med0x2e / RT-EWSLinks
A Powershell module including a couple of cmdlets for EWS Enum/Exploitation.
☆17Updated 6 years ago
Alternatives and similar repositories for RT-EWS
Users that are interested in RT-EWS are comparing it to the libraries listed below
Sorting:
- adding a backdooruser using win32api☆80Updated 5 years ago
- Credential Dumper☆77Updated 5 years ago
- C# POC code for the SessionEnv dll hijack by utilizing called functions of TSMSISrv.dll☆62Updated 6 years ago
- Initial Commit of Coresploit☆57Updated 4 years ago
- Create a Run registry key with direct system calls. Inspired by @Cneelis's Dumpert and SharpHide.☆79Updated 5 years ago
- Suite of Shellcode Running Utilities☆113Updated 5 years ago
- C++ POC code for the wlbsctrl.dll hijack on IKEEXT☆55Updated 6 years ago
- External C2 Using IE COM Objects☆102Updated 6 years ago
- A script that can be deployed to Azure App for C2 / Proxy / Redirector☆40Updated 6 years ago
- Smart overlay for Cobalt Strike PS function☆31Updated 6 years ago
- A C# stager for SILENTTRINITY (https://github.com/byt3bl33d3r/SILENTTRINITY)☆66Updated 5 years ago
- C2Bridges allow developers to create new custom communication protocols and quickly utilize them within Covenant.☆69Updated 4 years ago
- treafik fronted c2 examples☆26Updated 4 years ago
- ☆37Updated 7 years ago
- Microsoft Applocker evasion tool☆39Updated 5 years ago
- Standalone version of my AES Powershell payload for Cobalt Strike.☆111Updated 5 years ago
- I used this to see if an EDR is running in Safe Mode☆36Updated 4 years ago
- ☆35Updated 8 years ago
- Aggressor Script to Execute Assemblies from Github☆71Updated 4 years ago
- Automate AV evasion by calling AMSI☆87Updated 2 years ago
- ☆70Updated 4 years ago
- F# Implementation to spawn shellcode☆47Updated 7 years ago
- Send message on Telegram when you get a new Cobalt Strike beacon☆21Updated 5 years ago
- The program is designed to dump full memory of the process by specifing process name or process id.☆40Updated 6 years ago
- Source code in Win32 ASM and C for a shellcode execution wrapper designed to mitigate the risk of shellcode execution on a host other tha…☆19Updated 9 years ago
- Extract all IP of a computer using DCOM without authentication (aka detect network used for administration)☆26Updated 5 years ago
- ☆46Updated 4 years ago
- AppXSVC Service race condition - privilege escalation☆29Updated 6 years ago
- ☆48Updated 4 years ago
- Bypass AMSI and Defender using Ordinal Values☆42Updated 5 years ago