mertdas / RedPersistLinks
☆219Updated last year
Alternatives and similar repositories for RedPersist
Users that are interested in RedPersist are comparing it to the libraries listed below
Sorting:
- 🐍 Double Venom (DVenom) is a tool that provides an encryption wrapper and loader for your shellcode.☆158Updated 2 years ago
- A Tool that aims to evade av with binary padding☆156Updated last year
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆248Updated last year
- Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege☆225Updated 2 years ago
- ☆233Updated last year
- ☆166Updated 2 years ago
- TeamServer and Client of Exploration Command and Control Framework☆175Updated 2 weeks ago
- ☆101Updated 2 years ago
- Use ESC1 to perform a makeshift DCSync and dump hashes☆209Updated 2 years ago
- Cobalt Strike Beacon Object File (BOF) that uses WinStationConnect API to perform local/remote RDP session hijacking.☆309Updated 3 years ago
- Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE☆205Updated 2 years ago
- Terminate AV/EDR Processes using kernel driver☆348Updated 2 years ago
- AV bypass while you sip your Chai!☆223Updated last year
- Leverage WindowsApp createdump tool to obtain an lsass dump☆151Updated last year
- Weaponized HellsGate/SigFlip☆207Updated 2 years ago
- Fuegoshell is a powershell oneliner generator for Windows remote shell re-using TCP 445☆53Updated last year
- Chrome browser extension-based Command & Control☆207Updated 4 months ago
- Terminate AV/EDR leveraging BYOVD attack☆102Updated 8 months ago
- Homemade Aggressor scripts kit for Cobalt Strike☆84Updated this week
- Execute shellcode from a remote-hosted bin file using Winhttp.☆239Updated 2 years ago
- An all-in-one Cobalt Strike BOF to patch, check and revert AMSI and ETW for x64 process. Both syscalls and dynamic resolve versions are a…☆138Updated 3 years ago
- Set of python scripts which perform different ways of command execution via WMI protocol.☆163Updated 2 years ago
- ☆338Updated last week
- Execute shellcode files with rundll32☆210Updated last year
- Repository contains psexec, which will help to exploit the forgotten pipe☆171Updated last year
- An aggressor script that can help automate payload building in Cobalt Strike☆118Updated last year
- PoC exploit for the vulnerable WatchDog Anti-Malware driver (amsdk.sys) – weaponized to kill protected EDR/AV processes via BYOVD.☆173Updated 2 months ago
- CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking☆284Updated 2 years ago
- ErebusGate for Nim Bypass AV/EDR☆164Updated 3 years ago
- Dumping LSASS with a duplicated handle from custom LSA plugin☆202Updated 3 years ago