monoxgas / FlyingAFalseFlagLinks
Slides and Code for the BHUSA 2019 talk: Flying a False Flag
☆239Updated 6 years ago
Alternatives and similar repositories for FlyingAFalseFlag
Users that are interested in FlyingAFalseFlag are comparing it to the libraries listed below
Sorting:
- Parse NTLM challenge messages over HTTP and SMB☆150Updated 3 years ago
- A HTA shell to assist with breakout assessments.☆113Updated 4 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆113Updated 6 years ago
- A tool to create obfuscated HTA script.☆178Updated 4 years ago
- A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows operating system☆206Updated 2 years ago
- Constrained Language Mode + AMSI bypass all in one☆159Updated 6 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆149Updated 5 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆266Updated 7 years ago
- Exploit for Pulse Connect Secure SSL VPN arbitrary file read vulnerability (CVE-2019-11510)☆135Updated 6 years ago
- An Insider Threat Toolkit☆155Updated 7 years ago
- lateral movement techniques that can be used during red team exercises☆273Updated 6 years ago
- Powershell module to get the NetNTLMv2 hash of the current user☆96Updated 3 years ago
- BlueKeep scanner supporting NLA☆167Updated 6 years ago
- Slides from my talk in "Hackinparis" 2019 edition☆91Updated 6 years ago
- PEAS is a Python 2 library and command line application for running commands on an ActiveSync server e.g. Microsoft Exchange.☆184Updated 3 years ago
- CobaltStrike External C2 for Websockets☆197Updated 6 years ago
- Domain user enumeration tool☆216Updated 2 years ago
- poc for CVE-2020-1337 (Windows Print Spooler Elevation of Privilege)☆171Updated 5 years ago
- A simple python tool based on Impacket that tests servers for various known NTLM vulnerabilities☆205Updated 5 years ago
- Abuse CVE-2020-1472 (Zerologon) to take over a domain and then repair the local stored machine account password.☆181Updated 2 years ago
- Repo with various Red Team scripts☆147Updated 5 years ago
- A Powershell implementation of PrivExchange designed to run under the current user's context☆125Updated 7 years ago
- A progressive, customizable armored SSH tunnel implant for Linux and MacOS systems☆134Updated 6 years ago
- Python api for usage with cobalt strike's External C2 specification☆241Updated 2 years ago
- Auto-generate an HTaccess for payload delivery -- automatically pulls ips/nets/etc from known sandbox companies/sources that have been se…☆170Updated 5 years ago
- This tool implements a cloud version of the Shadow Copy attack against domain controllers running in AWS using only the EC2:CreateSnapsho…☆123Updated 6 years ago
- Project that retrieves crackable hashes from KRB5 AS-REP responses for users without kerberoast preauthentication enabled.☆208Updated 7 years ago
- Lateral Movement technique using DCOM and HTA☆235Updated 3 years ago
- Resources for our Active Directory security workshops☆140Updated 4 years ago
- Check if MS-RPRN is remotely available with powershell/c#☆179Updated 7 years ago