This is a C# implementation of making a process/executable run as NT AUTHORITY/SYSTEM. This is achieved through parent ID spoofing of almost any SYSTEM process.
☆107Feb 14, 2023Updated 3 years ago
Alternatives and similar repositories for GetSystem
Users that are interested in GetSystem are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Load shellcode via HELLGATE, Rewrite hellgate with .net framework for learning purpose.☆16Jan 21, 2022Updated 4 years ago
- Generic impersonation and privilege escalation with Golang. Like GenericPotato both named pipes and HTTP are supported.☆114Jun 7, 2021Updated 4 years ago
- .NET project for installing Persistence☆63Feb 14, 2022Updated 4 years ago
- SharpAddDomainMachine☆69Oct 12, 2021Updated 4 years ago
- A User Impersonation tool - via Token or Shellcode injection☆424May 21, 2022Updated 4 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Process Ghosting in C#☆220Jan 24, 2022Updated 4 years ago
- C# code to Sandbox Defender (and most probably other AV/EDRs).☆167Apr 22, 2022Updated 4 years ago
- NimicStack is the pure Nim implementation of Call Stack Spoofing technique to mimic legitimate programs☆96Apr 4, 2026Updated last month
- One gate to all syscalls!☆23Mar 12, 2022Updated 4 years ago
- Patch AMSI and ETW☆252May 8, 2024Updated 2 years ago
- Inject .NET assemblies into an existing process☆506Jan 19, 2022Updated 4 years ago
- C# implementation of the token privilege removal flaw discovered by @GabrielLandau/Elastic☆143Feb 23, 2022Updated 4 years ago
- .NET project for installing Persistence☆497Jun 26, 2024Updated last year
- C# Reflective loader for unmanaged binaries.☆447Jan 25, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Misc TaskScheduler Plays☆238Sep 27, 2022Updated 3 years ago
- ShellcodeFluctuation PoC ported to Nim☆79Oct 14, 2022Updated 3 years ago
- Beacon Object File PoC implementation of KillDefender☆234Apr 12, 2022Updated 4 years ago
- ☆153Jan 6, 2023Updated 3 years ago
- A small POC to make defender useless by removing its token privileges and lowering the token integrity☆692Jun 28, 2022Updated 3 years ago
- Beacon Object File (BOF) Creation Helper☆236May 3, 2022Updated 4 years ago
- An easy way to getsystem by golang.☆55Aug 30, 2021Updated 4 years ago
- Killing your preferred antimalware by abusing native symbolic links and NT paths.☆360Jan 29, 2022Updated 4 years ago
- Caeser Cipher your shellcode!☆21Mar 11, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- .NET Project for performing Authenticated Remote Execution☆406Feb 8, 2023Updated 3 years ago
- .NET Project for Attacking vCenter☆559Nov 11, 2021Updated 4 years ago
- Small tool to get a SYSTEM shell☆128Feb 7, 2016Updated 10 years ago
- Playing with PE's and Building Structures by Hand☆22Apr 21, 2022Updated 4 years ago
- A simple hidden vnc.☆34Feb 19, 2021Updated 5 years ago
- Exploit to SYSTEM for CVE-2021-21551☆235May 20, 2021Updated 5 years ago
- A Visual Studio template used to create Cobalt Strike BOFs☆328Nov 17, 2021Updated 4 years ago
- Proof of concept Beacon Object File (BOF) that attempts to detect userland hooks in place by AV/EDR☆158Jul 22, 2021Updated 4 years ago
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆378Sep 20, 2025Updated 8 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- cmd2shellcode☆78May 6, 2021Updated 5 years ago
- ☆182Feb 3, 2021Updated 5 years ago
- .NET, PE, & Raw Shellcode Packer/Loader Written in Nim☆822Jan 20, 2023Updated 3 years ago
- A Nim implementation of reflective PE-Loading from memory☆301Sep 5, 2024Updated last year
- A tool for converting SysWhispers2 syscalls for use with Nim projects☆126Dec 22, 2021Updated 4 years ago
- Another LSASS dumping tool that uses a dynamically compiled LSA plugin to grab an lsass handle and API hooking for capturing the dump in…☆270Mar 18, 2021Updated 5 years ago
- DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.☆321Sep 23, 2022Updated 3 years ago