mertdas / RedPersist
☆214Updated 11 months ago
Alternatives and similar repositories for RedPersist:
Users that are interested in RedPersist are comparing it to the libraries listed below
- 🐍 Double Venom (DVenom) is a tool that provides an encryption wrapper and loader for your shellcode.☆158Updated last year
- A Tool that aims to evade av with binary padding☆146Updated 8 months ago
- Execute shellcode files with rundll32☆190Updated last year
- Terminate AV/EDR Processes using kernel driver☆339Updated last year
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆236Updated 8 months ago
- Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege☆199Updated last year
- TeamServer and Client of Exploration Command and Control Framework☆105Updated last week
- ☆322Updated 3 weeks ago
- Weaponized HellsGate/SigFlip☆198Updated last year
- ☆162Updated last year
- Leverage WindowsApp createdump tool to obtain an lsass dump☆145Updated 5 months ago
- ☆221Updated 9 months ago
- Cobalt Strike Beacon Object File (BOF) that uses WinStationConnect API to perform local/remote RDP session hijacking.☆299Updated 2 years ago
- Execute shellcode from a remote-hosted bin file using Winhttp.☆230Updated last year
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆393Updated 8 months ago
- Attempt at Obfuscated version of SharpCollection☆203Updated 2 weeks ago
- Use ESC1 to perform a makeshift DCSync and dump hashes☆203Updated last year
- Porting of BOF InlineExecute-Assembly to load .NET assembly in process but with patchless AMSI and ETW bypass using hardware breakpoint.☆209Updated last year
- Different methods to get current username without using whoami☆174Updated last year
- CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking☆225Updated last year
- Evasive Golang Loader☆129Updated 7 months ago
- Port of Cobalt Strike's Process Inject Kit☆167Updated 3 months ago
- Repository contains psexec, which will help to exploit the forgotten pipe☆166Updated 3 months ago
- Escalate Service Account To LocalSystem via Kerberos☆393Updated last year
- Terminate AV/EDR leveraging BYOVD attack☆80Updated last year
- A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.☆125Updated last year
- AV bypass while you sip your Chai!☆218Updated 9 months ago
- ☆229Updated 3 months ago
- Github as C2 Demonstration , free API = free C2 Infrastructure☆135Updated last year
- The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).☆276Updated 3 months ago