mlcsec / proctoolsLinks
Small toolkit for extracting information and dumping sensitive strings from Windows processes
☆115Updated last year
Alternatives and similar repositories for proctools
Users that are interested in proctools are comparing it to the libraries listed below
Sorting:
- ☆59Updated 10 months ago
- Duplicate not owned Token from Running Process☆72Updated 2 years ago
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆64Updated 8 months ago
- A modification to fortra's CVE-2023-28252 exploit, compiled to exe☆54Updated last year
- Work, timer, and wait callback example using solely Native Windows APIs.☆89Updated last year
- Example code samples from our ScriptBlock Smuggling Blog post☆91Updated last year
- ☆79Updated 4 months ago
- Hunt for C2 servers and phishing web sites using VirusTotal API , you can modify code to kill the malicious process☆71Updated last year
- this script adds the ability to encode shellcode (.bin) in XOR,chacha20, AES. You can choose between 2 loaders (Myph / 221b)☆84Updated last year
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆59Updated 2 months ago
- POC of GITHUB simple C2 in rust☆52Updated last month
- RegStrike is a .reg payload generator☆58Updated last year
- A LAPS dumper written using the impacket library.☆31Updated 2 years ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆64Updated last year
- Dump Windows SAM hashes☆42Updated 2 years ago
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆47Updated 2 years ago
- Identifies bad bytes from static analysis with any Anti-Virus scanner.☆128Updated last year
- ☆58Updated 10 months ago
- Tool to aid in dumping LSASS process remotely☆40Updated last year
- A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.☆89Updated last year
- POC for DLL Proxying / Hijacking☆62Updated 3 months ago
- ☆82Updated last year
- Source code and examples for PassiveAggression☆64Updated last year
- A small and portable Windows C library for sandbox detection☆35Updated last year
- Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)☆41Updated 2 years ago
- Scripts I use to deploy Havoc on Linode and setup categorization and SSL☆42Updated last year
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆41Updated 7 months ago
- Lateral Movement☆124Updated last year
- ☆90Updated last year
- Dropping a powershell script at %HOMEPATH%\Documents\WindowsPowershell\ , that contains the implant's path , and whenever powershell pro…☆85Updated 2 years ago