mranv / adPentest
Windows Active DIrectory Pentesting documentation.
☆17Updated 9 months ago
Alternatives and similar repositories for adPentest:
Users that are interested in adPentest are comparing it to the libraries listed below
- UAC Bypass using CMSTP in Rust☆25Updated 3 months ago
- Windows Thread Pool Injection Havoc Implementation☆28Updated last year
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆38Updated 8 months ago
- shell code example☆33Updated 2 weeks ago
- The Swiss army knife of evasion tool that bypasses AMSI, Applocker, and CLM mode simultaneously.☆27Updated last year
- Cortex EDR Ransomware protection Bypass☆20Updated last month
- early cascade injection PoC based on Outflanks blog post, in rust☆56Updated 4 months ago
- Mirage is a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆72Updated last month
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆73Updated 7 months ago
- Hunting and injecting RWX 'mockingjay' DLLs in pure nim☆57Updated 3 months ago
- A pure C version of SymProcAddress☆26Updated last year
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆46Updated last year
- ☆25Updated last month
- Sliver extension to bypass UAC via cmstp written in rust☆25Updated 9 months ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆18Updated last year
- Terms of Use Conditional Access M365 Evilginx Phishlet☆31Updated last month
- A python script that automates a C2 Profile build☆26Updated this week
- ☆54Updated 5 months ago
- ☆27Updated 3 months ago
- Dirty PoC on how to abuse S1's VEH for Vectored Syscalls and Local Execution☆42Updated 8 months ago
- Lifetime AMSI bypass.☆35Updated 9 months ago
- Section-based payload obfuscation technique for x64☆59Updated 7 months ago
- Construct the payload at runtime using an array of offsets☆63Updated 9 months ago
- Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already s…☆60Updated last year
- A tool to modify SCCM remote control settings on the client machine, enabling remote control without permission prompts or notifications.…☆85Updated 5 months ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆47Updated 10 months ago
- FrostLock Injection is a freeze/thaw-based code injection technique that uses Windows Job Objects to temporarily freeze (suspend) a targe…☆14Updated 2 months ago
- Utilities for obfuscating shellcode☆55Updated 2 weeks ago
- ForsHops☆63Updated this week
- Shellcode Loader Utilizing ETW Events☆60Updated last month