nccgroup / Change-Lockscreen
Offensive tool to trigger network authentications as SYSTEM
☆141Updated 3 years ago
Alternatives and similar repositories for Change-Lockscreen
Users that are interested in Change-Lockscreen are comparing it to the libraries listed below
Sorting:
- Remotely enables Restricted Admin Mode☆209Updated 3 years ago
- Modular C# framework to exfiltrate loot over secure and trusted channels.☆126Updated 3 years ago
- ☆139Updated last year
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆91Updated last year
- Koppeling x Metatwin x LazySign☆210Updated 3 years ago
- C# tool for installing a shared network printer abusing the PrinterNightmare bug to allow other network machines easy privesc!☆185Updated 3 years ago
- GolenGMSA tool for working with GMSA passwords☆145Updated last year
- ☆151Updated 3 months ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆122Updated 3 years ago
- Start new PowerShell without etw and amsi in pure nim☆157Updated 3 years ago
- Proof of concept Beacon Object File (BOF) that uses static x64 syscalls to perform a complete in memory dump of a process and send that b…☆242Updated 3 years ago
- InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assem…☆192Updated 3 years ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆137Updated last year
- ☆159Updated 6 months ago
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆256Updated 2 years ago
- ☆220Updated last year
- Hookers are cooler than patches.☆169Updated 3 years ago
- Patching AmsiOpenSession by forcing an error branching☆145Updated last year
- tgtdelegation is a Beacon Object File (BOF) to obtain a usable TGT via the "TGT delegation trick"☆173Updated 3 years ago
- Dump stuff without touching disk☆162Updated 4 years ago
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆120Updated 3 years ago
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆91Updated 3 years ago
- ☆208Updated 3 years ago
- Tooling related to the WAM Bam - Recovering Web Tokens From Office blog post☆124Updated 2 years ago
- A small tool to convert Base64-encoded .kirbi tickets from Rubeus into .ccache files for Impacket☆55Updated 4 years ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆174Updated 2 years ago
- OPSEC safe Kerberoasting in C#☆191Updated 2 years ago
- python spraying tools based on impacket lib☆52Updated 2 years ago
- Tool for interacting with outlook interop during red team engagements☆144Updated 3 years ago
- (kinda) Malicious Outlook Reader☆135Updated 4 years ago