pygrum / monarch
Monarch - The Adversary Emulation Toolkit
☆62Updated 3 months ago
Alternatives and similar repositories for monarch:
Users that are interested in monarch are comparing it to the libraries listed below
- BOF to decrypt Signal Desktop chat logs☆65Updated last month
- ☆54Updated 5 months ago
- Source code and examples for PassiveAggression☆55Updated 10 months ago
- Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.☆92Updated this week
- A Rust PoC implementation of the Early Bird process hollowing technique, inspired by https://github.com/boku7/HOLLOW.☆29Updated 2 months ago
- APT Emulation tool to exfiltrate sensitive .docx, .pptx, .xlsx, .pdf files☆43Updated 2 weeks ago
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆78Updated 8 months ago
- Windows Administrator level Implant.☆49Updated 6 months ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆102Updated 3 weeks ago
- POC of GITHUB simple C2 in rust☆53Updated 2 months ago
- ☆48Updated last year
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆63Updated 3 months ago
- Construct the payload at runtime using an array of offsets☆63Updated 10 months ago
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆81Updated last month
- IPSpinner works as a local proxy that redirects requests through external services.☆42Updated last month
- malleable profile generator GUI for Havoc☆55Updated last year
- A proof-of-concept shellcode loader that leverages AI/ML face recognition models to verify the identity of a user on a target system☆38Updated 5 months ago
- Adversary Emulation Framework☆98Updated 8 months ago
- A red teaming attack paradigm against AI Agents☆29Updated last month
- Section-based payload obfuscation technique for x64☆59Updated 8 months ago
- Python module for running BOFs☆68Updated last year
- Sniffing files generator☆54Updated last month
- Docker container for running CobaltStrike 4.10☆37Updated 7 months ago
- Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options☆136Updated 3 weeks ago
- ☆106Updated 2 months ago
- ☆50Updated 5 months ago
- Lifetime AMSI bypass.☆35Updated 9 months ago
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆47Updated last year
- Example code samples from our ScriptBlock Smuggling Blog post☆90Updated 10 months ago
- This project is an implant framework designed for long term persistent access to Windows machines.☆110Updated last year