mranv / adPentestLinks
Windows Active DIrectory Pentesting documentation.
☆19Updated last year
Alternatives and similar repositories for adPentest
Users that are interested in adPentest are comparing it to the libraries listed below
Sorting:
- Obex – Blocking unwanted DLLs in user mode☆241Updated last month
- Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.☆155Updated 2 months ago
- Direct access to NTFS volumes☆279Updated last month
- Bypass user-land hooks by syscall tampering via the Trap Flag☆127Updated last month
- A Mythic Agent written in PIC C.☆201Updated 8 months ago
- A Rust implementation of Internal-Monologue — retrieving NetNTLM hashes without touching LSASS, leveraging SSPI for NTLM negotiation and …☆168Updated 5 months ago
- Activation Context Hijack☆170Updated 2 months ago
- early cascade injection PoC based on Outflanks blog post☆232Updated 11 months ago
- ☆108Updated 11 months ago
- NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-bui…☆227Updated 8 months ago
- ☆157Updated 4 months ago
- A Payload Analysis Framework☆108Updated last week
- ☆160Updated 10 months ago
- Bypass Credential Guard by patching WDigest.dll using only NTAPI functions☆255Updated 6 months ago
- Hide shellcode by shuffling bytes into a random array and reconstruct at runtime☆201Updated 6 months ago
- 64-bit, position-independent implant template for Windows in Rust.☆144Updated 5 months ago
- Evade EDR's the simple way, by not touching any of the API's they hook.☆154Updated 8 months ago
- Shellcode encryptor using a substitution cipher with a randomly generated key.☆141Updated 9 months ago
- A collection of position independent coding resources☆94Updated last month
- This comprehensive and central repository is designed for cybersecurity enthusiasts, researchers, and professionals seeking to stay ahead…☆132Updated 4 months ago
- Malleable shellcode loader written in C and Assembly utilizing direct or indirect syscalls for evading EDR hooks☆126Updated 9 months ago
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆47Updated last year
- The Swiss army knife of evasion tool that bypasses AMSI, Applocker, and CLM mode simultaneously.☆27Updated last year
- Comprehensive Windows Syscall Extraction & Analysis Framework☆141Updated last month
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.