mranv / adPentestLinks
Windows Active DIrectory Pentesting documentation.
☆19Updated last year
Alternatives and similar repositories for adPentest
Users that are interested in adPentest are comparing it to the libraries listed below
Sorting:
- Activation Context Hijack☆169Updated 6 months ago
- AppLocker-Based EDR Neutralization☆289Updated last month
- A Mythic Agent written in PIC C.☆206Updated last year
- Bypass user-land hooks by syscall tampering via the Trap Flag☆139Updated 5 months ago
- Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.☆165Updated 6 months ago
- ☆108Updated last year
- Obex – Blocking unwanted DLLs in user mode☆280Updated 4 months ago
- A Payload Analysis Framework☆115Updated 4 months ago
- early cascade injection PoC based on Outflanks blog post☆236Updated last year
- Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By…☆156Updated 2 months ago
- Direct access to NTFS volumes☆293Updated 5 months ago
- The different ways to dump lsass☆261Updated 5 months ago
- Shellcode injection using the Windows Debugging API☆165Updated last month
- The Swiss army knife of evasion tool that bypasses AMSI, Applocker, and CLM mode simultaneously.☆27Updated last year
- Execute shellcode via ASPNET compiler☆60Updated 4 months ago
- ☆159Updated last year
- Comprehensive Windows Syscall Extraction & Analysis Framework☆161Updated 5 months ago
- Payload encoding utility to effectively lower payload entropy.☆123Updated 9 months ago
- NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-bui…☆231Updated last year
- MIPS VM to execute payloads without allocating executable memory. Based on a PlayStation 1 (PSX) Emulator.☆124Updated last year
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆50Updated last year
- "Service-less" driver loading☆177Updated last year
- 64-bit, position-independent implant template for Windows in Rust.☆171Updated 2 months ago
- A Rust implementation of Internal-Monologue — retrieving NetNTLM hashes without touching LSASS, leveraging SSPI for NTLM negotiation and …☆191Updated 9 months ago
- Windows Thread Pool Injection Havoc Implementation☆32Updated last year
- lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.☆120Updated last year
- Utilities for obfuscating shellcode☆98Updated 4 months ago
- .NET tool used to enrich RPC telemetry☆101Updated 2 weeks ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- UAC Bypass using CMSTP in Rust☆34Updated last year