misterch0c / APT34
APT34/OILRIG leak
☆231Updated 6 years ago
Alternatives and similar repositories for APT34:
Users that are interested in APT34 are comparing it to the libraries listed below
- A PowerShell example of the Windows zero day priv esc☆326Updated 6 years ago
- Public work for CVE-2019-0708☆292Updated 5 years ago
- FudgeC2 - a command and control framework designed for team collaboration and post-exploitation activities.☆254Updated 2 years ago
- Code from this article: https://blog.rapid7.com/2018/05/03/hiding-metasploit-shellcode-to-evade-windows-defender/☆175Updated 4 years ago
- initial commit☆174Updated 6 years ago
- Exploits and advisories☆190Updated 4 years ago
- Toolset for research malware and Cobalt Strike beacons☆211Updated last month
- A client compatible with Metasploit's staging protocol☆257Updated 7 years ago
- morphHTA - Morphing Cobalt Strike's evil.HTA☆523Updated 2 years ago
- a tool to make it easy and fast to test various forms of injection☆173Updated 6 years ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆325Updated 6 years ago
- Lateral Movement technique using DCOM and HTA☆233Updated 2 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆257Updated 6 years ago
- UAC 0day, all day!☆278Updated 7 years ago
- Meterpreter_Payload_Detection.exe tool for detecting Meterpreter in memory like IPS-IDS and Forensics tool☆162Updated last year
- Python api for usage with cobalt strike's External C2 specification☆236Updated 2 years ago
- A payload stager using PowerShell☆184Updated 5 years ago
- ☆169Updated 7 years ago
- DNS-Persist is a post-exploitation agent which uses DNS for command and control.☆210Updated 7 years ago
- PoC code for CVE-2019-0841 Privilege Escalation vulnerability☆240Updated 6 years ago
- ☆272Updated 2 years ago
- DropboxC2C is a post-exploitation agent which uses Dropbox Infrastructure for command and control operations.☆150Updated 6 years ago
- A library for integrating communication channels with the Cobalt Strike External C2 server☆286Updated 7 years ago
- This script will generate payloads for basic intrusion detection avoidance. It utilizes publicly demonstrated techniques from several dif…☆442Updated last year
- Provides In-memory compilation and reflective loading of C# apps for AV evasion.☆369Updated last year
- PoC Exploit for CVE-2018-0802 (and optionally CVE-2017-11882)☆270Updated 7 years ago
- Encoded Reverse Shell Generator With Techniques To Bypass AV's☆146Updated 4 years ago
- Quick Malicious ClickOnceGenerator for Red Team☆249Updated 4 years ago
- DBC2 (DropboxC2) is a modular post-exploitation tool, composed of an agent running on the victim's machine, a controler, running on any m…☆295Updated 7 years ago
- Lazykatz is an automation developed to extract credentials from remote targets protected with AV and/or application whitelisting software…☆198Updated 7 years ago