mttaggart / crux
A proof-of-concept malicious Chrome extension
☆66Updated 2 years ago
Alternatives and similar repositories for crux:
Users that are interested in crux are comparing it to the libraries listed below
- Abuse Azure API permissions for red teaming☆61Updated last year
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆70Updated last year
- Golang reverse proxy with CobaltStrike malleable profile validation.☆109Updated last year
- Windows Persistence Toolkit in C#☆36Updated 2 years ago
- Get Fine Grained Password Policy☆66Updated 8 months ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆173Updated 2 years ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆86Updated 2 years ago
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated last year
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 2 years ago
- Tool to perform GCP Domain Wide Delegation abuse and access Gmail and Drive data☆43Updated last year
- Slide decks and/or materials from conference presentations☆55Updated 2 years ago
- A simple ExternalC2 POC for Havoc C2. Communicates over Notion using a custom python agent, handler and extc2 channel. Not operationally …☆83Updated 2 years ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆63Updated 9 months ago
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆31Updated 2 years ago
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆119Updated 2 years ago
- Simple PoC Python agent to showcase Havoc C2's custom agent interface. Not operationally safe or stable. Released with accompanying blog …☆79Updated last year
- ☆55Updated 9 months ago
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated 2 years ago
- Secretsdump C# version only supporting local (live) operation☆47Updated last year
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆85Updated last year
- Convert Cobalt Strike profiles to IIS web.config files☆112Updated 3 years ago
- Read the contents of MS Word Documents using Cobalt Strike's Execute-Assembly☆117Updated 3 months ago
- ☆119Updated 2 years ago
- Azure AD Password Checker☆84Updated 10 months ago
- ☆52Updated last year
- Microsoft Exchange password spray tool with proxy support.☆40Updated 3 years ago
- Tool for efficient directory enumeration☆55Updated 2 months ago
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆90Updated 2 years ago
- PowerShell script to terminate protected processes such as anti-malware and EDRs.☆27Updated last year