milkdevil / UltimateAppLockerByPassListLinks
☆58Updated 4 years ago
Alternatives and similar repositories for UltimateAppLockerByPassList
Users that are interested in UltimateAppLockerByPassList are comparing it to the libraries listed below
Sorting:
- Pypykatz agent implemented in .NET☆86Updated 6 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆86Updated 7 years ago
- A collection of PowerShell Modules for BloodHound/Empire Orchestration☆106Updated 7 years ago
- CACTUSTORCH: Payload Generation for Adversary Simulations☆76Updated 6 years ago
- Conveigh is a Windows PowerShell LLMNR/NBNS spoofer detection tool☆97Updated 8 years ago
- A Powershell implementation of PrivExchange designed to run under the current user's context☆125Updated 6 years ago
- Credit to Helge Klein - https://helgeklein.com/blog/2015/02/creating-realistic-test-user-accounts-active-directory/☆69Updated 7 years ago
- ☆169Updated 5 years ago
- ☆99Updated 6 years ago
- Collection of scripts for interacting with AD Kerberos from Linux☆74Updated 7 years ago
- C# Targeted Attack Reconnissance Tools☆122Updated 4 years ago
- Reconnaissance tool for Microsoft Office 365☆69Updated 6 years ago
- Detect possible sysmon logging bypasses given a specific configuration☆111Updated 6 years ago
- Python script for analyis of the "Trust.csv" file generated by Veil PowerView. Provides graph based analysis and output.☆121Updated 4 years ago
- A collection of files for adding and leveraging custom properties in BloodHound.☆185Updated 5 years ago
- SMB Named Pipe shell☆67Updated 7 months ago
- Slides from my talk in "Hackinparis" 2019 edition☆91Updated 6 years ago
- Useful Threat Hunting Stuff☆33Updated 4 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆146Updated 5 years ago
- InsecurePowerShell is PowerShell with some security features removed.☆104Updated 7 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆113Updated 5 years ago
- LogRM is a post exploitation powershell script which it uses windows event logs to gather information about internal network☆74Updated 5 years ago
- Simulating Adversary Operations☆93Updated 7 years ago
- ☆83Updated 9 years ago
- Exercises for C# Workshop at Wild West Hackin' Fest 2018 & 2019.☆64Updated 5 years ago
- Implementing Kerberoast attack fully in python☆72Updated 6 years ago
- ☆140Updated 5 years ago
- An Insider Threat Toolkit☆152Updated 6 years ago
- All materials from our Black Hat 2018 "Subverting Sysmon" talk☆135Updated 6 years ago
- A HTA shell to assist with breakout assessments.☆113Updated 3 years ago