ricardojoserf / SharpSelfDelete
PoC to self-delete a binary in C#
☆29Updated 11 months ago
Alternatives and similar repositories for SharpSelfDelete:
Users that are interested in SharpSelfDelete are comparing it to the libraries listed below
- Bypassing Amsi using LdrLoadDll☆31Updated last week
- A C# implementation of dumping credentials from Windows Credential Manager☆56Updated last year
- ☆35Updated last year
- Click Once + App Domain☆62Updated last year
- early cascade injection PoC based on Outflanks blog post, in rust☆50Updated 2 months ago
- C# Tool to interact with MS Exchange based on MS docs☆99Updated 2 years ago
- Cobalt Strike BOF for quser.exe implementation using Windows API☆83Updated last year
- Bunch of BOF files☆26Updated last month
- "D3MPSEC" is a memory dumping tool designed to extract memory dump from Lsass process using various techniques, including direct system c…☆24Updated 4 months ago
- DFSCoerce exe revisited version with custom authentication☆38Updated last year
- Just another ntdll unhooking using Parun's Fart technique☆73Updated last year
- Example of using Sleep to create better named pipes.☆41Updated last year
- Some of the presentations, workshops, and labs I gave at public conferences.☆29Updated 4 months ago
- A C# tool with more flexibility to customize scheduled task for both persistence and lateral movement in red team operation☆15Updated last month
- My implementation of Halo's Gate technique in C#☆53Updated 2 years ago
- ☆58Updated last year
- GPOAnalyzer is a tool designed to assist in parsing domain Group Policy Object (GPO) files located in the SYSVOL directory.☆22Updated 7 months ago
- A small Aggressor script to help Red Teams identify foreign processes on a host machine☆83Updated 2 years ago
- ☆61Updated last week
- Quick python script to replace the NtAPI functions within SysWhispers' assembly and header files with random strings☆25Updated 2 years ago
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆38Updated last year
- Tool to aid in dumping LSASS process remotely☆35Updated 5 months ago
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆78Updated 2 years ago
- ☆47Updated last year
- A care package of useful bofs for red team engagments☆53Updated last month
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆33Updated last year
- Rewrite to fit my needs☆27Updated 5 months ago
- ☆19Updated 7 months ago
- Add Shadow Credentials to a target object by editing their msDS-KeyCredentialLink attribute☆19Updated 7 months ago
- Your NTDLL vaccine from modern direct syscall methods.☆35Updated 2 years ago