sensepost / shellnotLinks
Pseudo-shell for RCE scenarios: tunnels commands via /tmp sockets to a local daemon, keeps context, no bind or reverse shell needed.
☆41Updated 6 months ago
Alternatives and similar repositories for shellnot
Users that are interested in shellnot are comparing it to the libraries listed below
Sorting:
- Python3 rewrite of AsOutsider features of AADInternals☆59Updated 5 months ago
- Using Chromium-based browsers as a proxy for C2 traffic.☆130Updated 3 weeks ago
- RPC to WebClient startup☆53Updated 4 months ago
- ☆137Updated 10 months ago
- Sniffing files generator☆59Updated 10 months ago
- Internal Monologue BOF☆78Updated last year
- A Python script for creating `.lnk` (shortcut) files with embedded encoded data and packaging them into ZIP archives.☆90Updated 11 months ago
- Blog/Journal on how to backdoor VSCode extensions☆75Updated 5 months ago
- A C# utility for interacting with SCOM☆90Updated 3 weeks ago
- ☆41Updated 10 months ago
- Find DLLs with RWX section☆80Updated 2 years ago
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆78Updated last year
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆95Updated 5 months ago
- template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.☆95Updated 3 weeks ago
- ☆71Updated 3 months ago
- ☆88Updated 3 years ago
- ☆52Updated last year
- ☆51Updated 5 months ago
- tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it☆130Updated 4 months ago
- Demo code JavaScript POC that tricks user into sending Windows hash to responder☆36Updated 2 weeks ago
- ☆115Updated last year
- adws enumeration bof☆160Updated 2 months ago
- This technique leverages PowerShell's .NET interop layer and COM automation to achieve stealthy command execution by abusing implicit typ…☆51Updated 7 months ago
- Things i do because i saw it on twitter on a weekend☆57Updated 5 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated last year
- Permanently disable EDRs as local admin☆123Updated last week
- ☆57Updated 10 months ago
- PowerShell Implementation of ADFSDump to assist with GoldenSAML☆37Updated 3 weeks ago
- Local SYSTEM auth trigger for relaying - X☆155Updated 5 months ago
- A simple C++ Windows tool to get information about processes exposing named pipes.☆39Updated 9 months ago