sakkis91 / SandboxPPL
Golang PoC that sandboxes Defender (or other PPL) by setting its token integrity to Untrusted.
☆11Updated 2 years ago
Alternatives and similar repositories for SandboxPPL:
Users that are interested in SandboxPPL are comparing it to the libraries listed below
- Dump Teams conversations☆18Updated 3 years ago
- ☆24Updated 2 years ago
- Utility to analyse, ingest and push out credentials from common data sources during an internal penetration test.☆19Updated 2 years ago
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago
- ☆23Updated 9 months ago
- LSASS enumeration like pypykatz written in C-Lang☆20Updated 3 years ago
- ☆19Updated 2 years ago
- Example of using Sleep to create better named pipes.☆41Updated last year
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆33Updated last year
- A PoC~ish of https://elastic.github.io/security-research/malware/2022/01/01.operation-bleeding-bear/article/☆30Updated 11 months ago
- ☆29Updated 2 years ago
- C# project to Reflectively load .Net assemblies in memory☆17Updated 7 months ago
- Cobalt Strike Beacon Object File to enable the webdav client service on x64 windows hosts☆17Updated last year
- Extended Process List (Search functionality)☆29Updated 4 years ago
- All my POC related to malware development☆11Updated 8 months ago
- A C# Tool to find left over pentest data for use in your pentest or redteam op. Blue could maybe use to find files to cleanup☆35Updated last year
- Scripts to interact with Microsoft Graph APIs☆33Updated 2 months ago
- Extension functionality for the NightHawk operator client☆26Updated last year
- Some of my custom "tools".☆22Updated 2 years ago
- Miscellaneous examples for use with Cobalt Strike Beacon☆10Updated 4 years ago
- A .NET 4.8 application to retrieve delivr.to emails from Microsoft Outlook via COM☆18Updated 7 months ago
- Aggressor script that gets the latest commands from CobaltStrikes web site and creates an aggressor script based on tool options.☆20Updated 3 years ago
- Automated (kinda) deployment of MalRDP infrastructure with Terraform & Ansible☆11Updated last year
- SharpReg is a simple code set to interact with the Remote Registry service api and is compatible with Cobalt Strike.☆26Updated 4 years ago
- Purple Team Dropper generator using open source templates.☆14Updated 8 months ago
- ☆42Updated last year
- Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level☆25Updated 2 years ago
- This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly☆18Updated last year
- ☆36Updated 3 years ago
- A VSCode plugin to assist with BOF development.☆33Updated 5 months ago