safedv / RustSoliloquy
A Rust implementation of Internal-Monologue — retrieving NetNTLM hashes without touching LSASS, leveraging SSPI for NTLM negotiation and indirect NTAPIs for core operations.
☆149Updated last month
Alternatives and similar repositories for RustSoliloquy:
Users that are interested in RustSoliloquy are comparing it to the libraries listed below
- ☆197Updated 3 months ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆175Updated 2 months ago
- comprehensive .NET tool designed to extract and display detailed information about Windows Defender exclusions and Attack Surface Reducti…☆192Updated 7 months ago
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆143Updated 8 months ago
- C2 Infrastructure Automation☆92Updated 2 months ago
- Python implementation of GhostPack's Seatbelt situational awareness tool☆235Updated 2 months ago
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆157Updated last month
- Active Directory data ingestor for BloodHound Community Edition written in Rust. 🦀☆141Updated this week
- Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement☆152Updated last month
- Stage 0☆140Updated last month
- Flexible LDAP proxy that can be used to inspect & transform all LDAP packets generated by other tools on the fly.☆99Updated 3 weeks ago
- ☆161Updated 2 months ago
- ☆136Updated 5 months ago
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆274Updated last month
- ☆187Updated 9 months ago
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆101Updated 9 months ago
- Tool for Active Directory Certificate Services enumeration and abuse☆95Updated last month
- Extracting NetNTLM without touching lsass.exe☆232Updated last year
- SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.☆182Updated last month
- A Mythic Agent written in PIC C.☆166Updated last week
- GregsBestFriend process injection code created from the White Knight Labs Offensive Development course☆179Updated last year
- StoneKeeper C2, an experimental EDR evasion framework for research purposes☆136Updated 3 weeks ago
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆130Updated 5 months ago
- IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then refle…☆107Updated 8 months ago
- Find potential DLL Sideloads on your windows computer☆168Updated this week
- Blocks EDR Telemetry by performing Person-in-the-Middle attack where network filtering is applied using iptables. The blocked destination…☆141Updated 5 months ago
- ☆185Updated 3 months ago
- An interactive shell to spoof some LOLBins command line☆181Updated 11 months ago
- ☆133Updated last month
- Two in one, patch lifetime powershell console, no more etw and amsi!☆84Updated 6 months ago