nettitude / MalSCCMLinks
☆250Updated last year
Alternatives and similar repositories for MalSCCM
Users that are interested in MalSCCM are comparing it to the libraries listed below
Sorting:
- OPSEC safe Kerberoasting in C#☆192Updated 3 years ago
- GolenGMSA tool for working with GMSA passwords☆163Updated 3 weeks ago
- ☆155Updated 7 months ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆127Updated 3 years ago
- Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus☆232Updated 3 years ago
- Modular C# framework to exfiltrate loot over secure and trusted channels.☆130Updated 4 years ago
- Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares☆180Updated 2 years ago
- Beacon Object File & C# project to check LDAP signing☆194Updated last year
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆258Updated 2 years ago
- Password attacks and MFA validation against various endpoints in Azure and Office 365☆153Updated 2 years ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆139Updated last year
- ADCS cert template modification and ACL enumeration☆142Updated 2 years ago
- Simple C# implementation of PowerUpSQL☆94Updated last year
- Start new PowerShell without etw and amsi in pure nim☆156Updated 3 years ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆188Updated 3 years ago
- ACL abuse swiss-knife☆125Updated 2 years ago
- ☆191Updated 2 weeks ago
- Cortex XDR Config Extractor☆133Updated 2 years ago
- Koppeling x Metatwin x LazySign☆214Updated 4 years ago
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆120Updated 3 years ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆176Updated 2 years ago
- Powershell version of SharpGPOAbuse☆85Updated 4 years ago
- Buggy script to play with GPOs☆115Updated 8 months ago
- Run Powershell without software restrictions.☆284Updated 4 years ago
- AzureC2Relay is an Azure Function that validates and relays Cobalt Strike beacon traffic by verifying the incoming requests based on a Co…☆228Updated 4 years ago
- Agressor script that lists available Cobalt Strike beacon commands and colors them based on their type☆210Updated last year
- tgtdelegation is a Beacon Object File (BOF) to obtain a usable TGT via the "TGT delegation trick"☆176Updated 3 years ago
- A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.☆300Updated 2 years ago
- Remotely enables Restricted Admin Mode☆213Updated 4 years ago
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆86Updated 3 years ago