misterch0c / APT34
APT34/OILRIG leak
☆231Updated 5 years ago
Alternatives and similar repositories for APT34:
Users that are interested in APT34 are comparing it to the libraries listed below
- Code from this article: https://blog.rapid7.com/2018/05/03/hiding-metasploit-shellcode-to-evade-windows-defender/☆174Updated 4 years ago
- Exploits and advisories☆188Updated 4 years ago
- A PowerShell example of the Windows zero day priv esc☆324Updated 6 years ago
- FudgeC2 - a command and control framework designed for team collaboration and post-exploitation activities.☆251Updated last year
- initial commit☆173Updated 6 years ago
- A payload stager using PowerShell☆183Updated 5 years ago
- Lateral Movement technique using DCOM and HTA☆231Updated 2 years ago
- RedPeanut is a small RAT developed in .Net Core 2 and its agent in .Net 3.5 / 4.0.☆328Updated last year
- A library for integrating communication channels with the Cobalt Strike External C2 server☆283Updated 7 years ago
- Meterpreter_Payload_Detection.exe tool for detecting Meterpreter in memory like IPS-IDS and Forensics tool☆161Updated last year
- Powershell script for enumerating vulnerable DCOM Applications☆256Updated 6 years ago
- Lazykatz is an automation developed to extract credentials from remote targets protected with AV and/or application whitelisting software…☆198Updated 7 years ago
- a tool to make it easy and fast to test various forms of injection☆172Updated 5 years ago
- A JavaScript and VBScript Based Empire Launcher, which runs within their own embedded PowerShell Host.☆319Updated 7 years ago
- Quick Malicious ClickOnceGenerator for Red Team☆249Updated 4 years ago
- morphHTA - Morphing Cobalt Strike's evil.HTA☆519Updated last year
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆323Updated 5 years ago
- Aggressor scripts I've made for Cobalt Strike☆405Updated last year
- DNS-Persist is a post-exploitation agent which uses DNS for command and control.☆211Updated 7 years ago
- Toolset for research malware and Cobalt Strike beacons☆208Updated last week
- Python api for usage with cobalt strike's External C2 specification☆227Updated 2 years ago
- A client compatible with Metasploit's staging protocol☆254Updated 7 years ago
- PoC Exploit for CVE-2018-0802 (and optionally CVE-2017-11882)☆271Updated 7 years ago
- Pazuzu: Reflective DLL to run binaries from memory☆214Updated 4 years ago
- UAC 0day, all day!☆277Updated 7 years ago
- DBC2 (DropboxC2) is a modular post-exploitation tool, composed of an agent running on the victim's machine, a controler, running on any m…☆295Updated 7 years ago
- Public work for CVE-2019-0708☆290Updated 5 years ago
- Teaching old shellcode new tricks☆205Updated 7 years ago
- The PowerThIEf, an Internet Explorer Post Exploitation library☆130Updated 3 weeks ago
- Collection of Aggressor Scripts for Cobalt Strike☆169Updated 6 years ago