sec-consult / msiscan
Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers
☆120Updated 8 months ago
Alternatives and similar repositories for msiscan
Users that are interested in msiscan are comparing it to the libraries listed below
Sorting:
- ☆110Updated 5 months ago
- Remotely Enumerate sessions using undocumented Windows Station APIs☆117Updated 8 months ago
- ☆128Updated 3 months ago
- ☆88Updated 2 years ago
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆139Updated 9 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆90Updated 11 months ago
- A tool to Impersonate logged on users without touching LSASS (Including non-Interactive sessions).☆93Updated 2 years ago
- ☆69Updated last year
- Scan your computer for known vulnerable and known malicious Windows drivers using loldrivers.io☆82Updated last year
- Find .net assemblies locally☆113Updated 2 years ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆91Updated last year
- Local & remote Windows DLL Proxying☆164Updated 11 months ago
- ☆117Updated last month
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆114Updated last month
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆148Updated last year
- Find DLLs with RWX section☆80Updated last year
- C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps☆139Updated 9 months ago
- BadExclusionsNWBO is an evolution from BadExclusions to identify folder custom or undocumented exclusions on AV/EDR☆76Updated last year
- WTSImpersonator utilizes WTSQueryUserToken to steal user tokens by abusing the RPC Named Pipe "\\pipe\LSM_API_service"☆119Updated 10 months ago
- Adversary Emulation Framework☆98Updated 9 months ago
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated 2 years ago
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆63Updated 4 months ago
- Weaponizing DCOM for NTLM Authentication Coercions☆140Updated last month
- The program uses the Windows API functions to traverse through directories and locate DLL files with RWX section☆101Updated last year
- Tool for viewing NTDS.dit☆163Updated 2 months ago
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆122Updated 3 years ago
- Unchain AMSI by patching the provider’s unmonitored memory space☆90Updated 2 years ago
- IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then refle…☆115Updated last year
- Source code and examples for PassiveAggression☆60Updated 11 months ago
- Source generator to add D/Invoke and indirect syscall methods to a C# project.☆180Updated last year