misterch0c / APT34
APT34/OILRIG leak
☆231Updated 5 years ago
Alternatives and similar repositories for APT34:
Users that are interested in APT34 are comparing it to the libraries listed below
- A PowerShell example of the Windows zero day priv esc☆323Updated 6 years ago
- DNS-Persist is a post-exploitation agent which uses DNS for command and control.☆211Updated 7 years ago
- FudgeC2 - a command and control framework designed for team collaboration and post-exploitation activities.☆249Updated last year
- Code from this article: https://blog.rapid7.com/2018/05/03/hiding-metasploit-shellcode-to-evade-windows-defender/☆172Updated 4 years ago
- Exploits and advisories☆189Updated 4 years ago
- morphHTA - Morphing Cobalt Strike's evil.HTA☆520Updated last year
- A library for integrating communication channels with the Cobalt Strike External C2 server☆283Updated 7 years ago
- PoC code for CVE-2019-0841 Privilege Escalation vulnerability☆242Updated 5 years ago
- DropboxC2C is a post-exploitation agent which uses Dropbox Infrastructure for command and control operations.☆147Updated 6 years ago
- ☆272Updated 2 years ago
- a tool to make it easy and fast to test various forms of injection☆172Updated 5 years ago
- RedPeanut is a small RAT developed in .Net Core 2 and its agent in .Net 3.5 / 4.0.☆328Updated last year
- A client compatible with Metasploit's staging protocol☆254Updated 7 years ago
- This repo contains my custom scripts for Penetration Testing and Red Team Assessments. I will keep on updating this repo as and when I ge…☆350Updated 6 years ago
- UAC 0day, all day!☆277Updated 7 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆256Updated 6 years ago
- initial commit☆173Updated 6 years ago
- Python api for usage with cobalt strike's External C2 specification☆229Updated last year
- ☆167Updated 7 years ago
- DBC2 (DropboxC2) is a modular post-exploitation tool, composed of an agent running on the victim's machine, a controler, running on any m…☆294Updated 7 years ago
- PoC Exploit for CVE-2018-0802 (and optionally CVE-2017-11882)☆271Updated 6 years ago
- Port of eternal blue exploits to powershell☆150Updated 7 years ago
- Teaching old shellcode new tricks☆204Updated 7 years ago
- Lazykatz is an automation developed to extract credentials from remote targets protected with AV and/or application whitelisting software…☆198Updated 7 years ago
- Aggressor scripts I've made for Cobalt Strike☆403Updated last year
- Quick Malicious ClickOnceGenerator for Red Team☆250Updated 4 years ago
- Lateral Movement technique using DCOM and HTA☆231Updated 2 years ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆322Updated 5 years ago
- Public work for CVE-2019-0708☆290Updated 5 years ago
- Privilege Escalation: Weaponizing CVE-2019-1405 and CVE-2019-1322☆351Updated 5 years ago