med0x2e / RT-EWSLinks
A Powershell module including a couple of cmdlets for EWS Enum/Exploitation.
☆17Updated 5 years ago
Alternatives and similar repositories for RT-EWS
Users that are interested in RT-EWS are comparing it to the libraries listed below
Sorting:
- adding a backdooruser using win32api☆80Updated 4 years ago
- C# POC code for the SessionEnv dll hijack by utilizing called functions of TSMSISrv.dll☆58Updated 6 years ago
- Create a Run registry key with direct system calls. Inspired by @Cneelis's Dumpert and SharpHide.☆77Updated 5 years ago
- F# Implementation to spawn shellcode☆47Updated 7 years ago
- Initial Commit of Coresploit☆56Updated 3 years ago
- Credential Dumper☆77Updated 5 years ago
- C++ POC code for the wlbsctrl.dll hijack on IKEEXT☆53Updated 6 years ago
- Suite of Shellcode Running Utilities☆111Updated 5 years ago
- ☆37Updated 7 years ago
- Smart overlay for Cobalt Strike PS function☆31Updated 6 years ago
- ☆37Updated 7 years ago
- External C2 Using IE COM Objects☆100Updated 6 years ago
- treafik fronted c2 examples☆26Updated 4 years ago
- C2Bridges allow developers to create new custom communication protocols and quickly utilize them within Covenant.☆69Updated 4 years ago
- ☆54Updated 6 years ago
- A script that can be deployed to Azure App for C2 / Proxy / Redirector☆37Updated 6 years ago
- Convert Empire profiles to Apache mod_rewrite scripts☆28Updated 5 years ago
- ☆70Updated 4 years ago
- Microsoft Applocker evasion tool☆39Updated 5 years ago
- Extracts all base64 ticket data from a rubeus /dump file and converts the tickets to ccache files for easy use with other tools.☆66Updated 4 years ago
- The program is designed to dump full memory of the process by specifing process name or process id.☆39Updated 5 years ago
- ☆70Updated 6 years ago
- Extension of SMBLibrary for RPC calls☆35Updated last year
- Helper script for mangling CS payloads☆51Updated 6 years ago
- Experiments on the Windows Internals☆30Updated 5 years ago
- Bypass AMSI and Defender using Ordinal Values☆42Updated 5 years ago
- C# port of LogServiceCrash☆46Updated 4 years ago
- Execute Mimikatz with different technique☆51Updated 3 years ago
- Sound Research SECOMN service Privilege Escalation (windows 10)☆40Updated 5 years ago
- I used this to see if an EDR is running in Safe Mode☆37Updated 4 years ago