rvrsh3ll / UACSilentCleanup
☆14Updated 5 years ago
Alternatives and similar repositories for UACSilentCleanup:
Users that are interested in UACSilentCleanup are comparing it to the libraries listed below
- Execute shellcode with syscalls from C# .dll☆12Updated 4 years ago
- C# code to run PIC using CreateThread☆16Updated 5 years ago
- ☆16Updated 6 years ago
- ☆14Updated 5 years ago
- A PoC to show how to add code to C# and dotNet and make it reusable for Red Team operations. Maybe one day it will be the largest collect…☆17Updated 4 years ago
- Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.☆16Updated 6 years ago
- ADD/SUB encoder for alphanumeric shellcode☆9Updated 5 years ago
- DLL hijacking vulnerability scanner and PE infector tool☆17Updated 7 years ago
- Ingests logs/dbs from cobalt and empire and outputs an excel report with activity, sessions, and credentials☆20Updated 4 years ago
- ☆14Updated 4 years ago
- Windows privilege escalation Mafia is a framework provides all resources needed for privilege escalation beginners☆12Updated 3 years ago
- ☆28Updated 7 years ago
- Files related to my presentation at SigSegV2 conference in 2019. You can find related papers on my blog☆13Updated 5 years ago
- Silent Cleanup UAC Bypass POC☆11Updated 5 years ago
- Example of async client/server sockets in .NET 5☆16Updated 3 years ago
- Quick Proof of Concept for reading a processes memory and searching for a specific string.☆10Updated 6 years ago
- ☆15Updated last year
- Modifies machine.config for persistence after installing signed .net assembly onto GAC☆12Updated 2 years ago
- leaking net-ntlm with webdav☆24Updated 3 years ago
- ☆18Updated 3 years ago
- SSDP Service Discovery☆16Updated 6 years ago
- Spin up a reverse proxy quickly on Heroku☆13Updated 4 years ago
- Retrieve the IIS Application Pool Credentials. Relies on the WebAdministration PowerShell Module.☆14Updated 7 years ago
- Ransoblin (Ransomware Bokoblin)☆17Updated 4 years ago
- Create COM Objects backed by Scripts, not DLLs☆9Updated 7 years ago
- PoC code from blog☆16Updated 4 years ago
- ☆11Updated 5 years ago
- .net tool that uses WMI queries to enumerate active sessions and accounts configured to run services on remote systems☆33Updated 5 years ago
- A variation CredBandit that uses compression to reduce the size of the data that must be trasnmitted.☆18Updated 3 years ago
- Convert Empire profiles to Apache mod_rewrite scripts☆28Updated 5 years ago