monoxgas / FlyingAFalseFlag
Slides and Code for the BHUSA 2019 talk: Flying a False Flag
☆229Updated 5 years ago
Alternatives and similar repositories for FlyingAFalseFlag:
Users that are interested in FlyingAFalseFlag are comparing it to the libraries listed below
- lateral movement techniques that can be used during red team exercises☆269Updated 5 years ago
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆105Updated 5 years ago
- Parse NTLM challenge messages over HTTP and SMB☆143Updated 2 years ago
- Lateral Movement technique using DCOM and HTA☆230Updated 2 years ago
- A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows operating system☆200Updated last year
- Powershell script for enumerating vulnerable DCOM Applications☆255Updated 6 years ago
- A HTA shell to assist with breakout assessments.☆112Updated 3 years ago
- Auto-generate an HTaccess for payload delivery -- automatically pulls ips/nets/etc from known sandbox companies/sources that have been se…☆168Updated 4 years ago
- Domain user enumeration tool☆212Updated last year
- A progressive, customizable armored SSH tunnel implant for Linux and MacOS systems☆133Updated 5 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆144Updated 4 years ago
- Constrained Language Mode + AMSI bypass all in one☆155Updated 5 years ago
- BlueKeep scanner supporting NLA☆167Updated 5 years ago
- A Powershell implementation of PrivExchange designed to run under the current user's context☆123Updated 5 years ago
- Slides from my talk in "Hackinparis" 2019 edition☆91Updated 5 years ago
- PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe)☆322Updated 5 years ago
- ☆189Updated 4 years ago
- Quick Malicious ClickOnceGenerator for Red Team☆246Updated 3 years ago
- A library for integrating communication channels with the Cobalt Strike External C2 server☆282Updated 7 years ago
- ☆229Updated 6 years ago
- Aggressor scripts for phases of a pen test or red team assessment☆177Updated 5 months ago
- Python api for usage with cobalt strike's External C2 specification☆229Updated last year
- The PowerThIEf, an Internet Explorer Post Exploitation library☆130Updated 6 years ago
- a tool to make it easy and fast to test various forms of injection☆172Updated 5 years ago
- An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.☆301Updated 2 years ago
- CobaltStrike External C2 for Websockets☆194Updated 5 years ago
- An Insider Threat Toolkit☆149Updated 6 years ago
- Recon-AD, an AD recon tool based on ADSI and reflective DLL’s☆318Updated 5 years ago