n0tspam / RunspaceLoader
Launches a limited shell using PowerShell Runspaces with an optional AMSI Bypass. Does not invoke Powershell.exe
☆13Updated last year
Alternatives and similar repositories for RunspaceLoader:
Users that are interested in RunspaceLoader are comparing it to the libraries listed below
- Scripts I use to deploy Havoc on Linode and setup categorization and SSL☆39Updated 8 months ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆33Updated 8 months ago
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated last year
- ☆47Updated 2 years ago
- Duplicate not owned Token from Running Process☆72Updated last year
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 3 years ago
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆62Updated last month
- A repository with my code snippets for research/education purposes.☆50Updated last year
- A Python based tool to convert custom queries from Legacy BloodHound to BloodHound CE format, with the option to directly upload them to …☆22Updated last month
- Cobalt Strike BOFS☆15Updated last year
- Secretsdump C# version only supporting local (live) operation☆48Updated last year
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆31Updated 2 years ago
- Tool to aid in dumping LSASS process remotely☆38Updated 6 months ago
- Source code and examples for PassiveAggression☆55Updated 8 months ago
- in-process powershell runner for BRC4☆44Updated last year
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆73Updated 2 years ago
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆52Updated 2 months ago
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated 2 years ago
- Python3 rewrite of AsOutsider features of AADInternals☆40Updated 2 months ago
- Docker container for running CobaltStrike 4.10☆36Updated 5 months ago
- Run Cobalt Strike BOFs in Brute Ratel C4!☆61Updated last month
- ☆52Updated 3 months ago
- Items related to the RedELK workshop given at security conferences☆28Updated last year
- Situational Awareness script to identify how and where to run implants☆45Updated 2 months ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆80Updated 4 months ago
- ☆52Updated last year
- GetSystem-LCI is a PowerShell script to escalate privileges from Administrator to NT AUTHORITY\SYSTEM by abusing LanguageComponentsInstal…☆30Updated 2 months ago