monoxgas / FlyingAFalseFlag
Slides and Code for the BHUSA 2019 talk: Flying a False Flag
☆234Updated 5 years ago
Alternatives and similar repositories for FlyingAFalseFlag:
Users that are interested in FlyingAFalseFlag are comparing it to the libraries listed below
- lateral movement techniques that can be used during red team exercises☆271Updated 5 years ago
- Parse NTLM challenge messages over HTTP and SMB☆146Updated 2 years ago
- A HTA shell to assist with breakout assessments.☆113Updated 3 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆113Updated 5 years ago
- Auto-generate an HTaccess for payload delivery -- automatically pulls ips/nets/etc from known sandbox companies/sources that have been se…☆168Updated 4 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆257Updated 6 years ago
- Slides from my talk in "Hackinparis" 2019 edition☆91Updated 5 years ago
- A library for integrating communication channels with the Cobalt Strike External C2 server☆286Updated 7 years ago
- Lateral Movement technique using DCOM and HTA☆233Updated 2 years ago
- ☆191Updated 5 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆146Updated 5 years ago
- Domain user enumeration tool☆215Updated last year
- An Insider Threat Toolkit☆151Updated 6 years ago
- An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.☆304Updated 2 years ago
- Powershell module to get the NetNTLMv2 hash of the current user☆93Updated 2 years ago
- Constrained Language Mode + AMSI bypass all in one☆157Updated 5 years ago
- Exploit for Pulse Connect Secure SSL VPN arbitrary file read vulnerability (CVE-2019-11510)☆137Updated 5 years ago
- ntlm relay attack to Exchange Web Services☆331Updated 7 years ago
- Recon-AD, an AD recon tool based on ADSI and reflective DLL’s☆327Updated 5 years ago
- Python api for usage with cobalt strike's External C2 specification☆236Updated 2 years ago
- The PowerThIEf, an Internet Explorer Post Exploitation library☆130Updated 2 months ago
- Resources for our Active Directory security workshops☆140Updated 3 years ago
- BlueKeep scanner supporting NLA☆167Updated 5 years ago
- A progressive, customizable armored SSH tunnel implant for Linux and MacOS systems☆132Updated 6 years ago
- Automated script for setting up CobaltStrike redirectors (nginx reverse proxy, letsencrypt)☆143Updated 7 years ago
- ☆128Updated last year
- Presentation material presented by Outflank team members at public events.☆187Updated 4 months ago
- ☆73Updated 7 years ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆325Updated 6 years ago
- Aggregation of Cobalt Strike's aggressor scripts.☆143Updated 7 years ago