sec-consult / msiscan
Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers
☆90Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for msiscan
- ☆83Updated 2 years ago
- A Python POC for CRED1 over SOCKS5☆134Updated last month
- ☆36Updated last month
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆123Updated 3 months ago
- ☆104Updated this week
- Scan your computer for known vulnerable and known malicious Windows drivers using loldrivers.io☆80Updated 9 months ago
- A C# tool to output crackable DPAPI hashes from user MasterKeys☆131Updated 2 months ago
- ZSH integration for Impacket☆59Updated 3 weeks ago
- Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement☆108Updated last month
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆80Updated 6 months ago
- Find .net assemblies locally☆92Updated 2 years ago
- Local & remote Windows DLL Proxying☆160Updated 5 months ago
- ☆112Updated last year
- Living Off the Foreign Land setup scripts☆63Updated 3 weeks ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆166Updated last year
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆78Updated 7 months ago
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆145Updated 11 months ago
- ☆104Updated 3 months ago
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated last year
- A Mythic Agent written in PIC C.☆92Updated this week
- Golang search engine scraper intended for identification of published ClickOnce deployments☆68Updated this week
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆53Updated 7 months ago
- Living off the land searches for explorer and sharepoint☆53Updated 3 weeks ago
- ☆68Updated last year
- Unchain AMSI by patching the provider’s unmonitored memory space☆88Updated 2 years ago
- Active Directory data ingestor for BloodHound Community Edition written in Rust. 🦀☆104Updated last month
- BadExclusionsNWBO is an evolution from BadExclusions to identify folder custom or undocumented exclusions on AV/EDR☆72Updated 9 months ago
- A PoC demonstrating code execution via DLL Side-Loading in WinSxS binaries.☆108Updated 8 months ago
- Lateral Movement via the .NET Profiler☆76Updated this week
- Example code samples from our ScriptBlock Smuggling Blog post☆83Updated 5 months ago