simondotsh / DirSync
DirSync is a simple proof of concept PowerShell module to demonstrate the impact of delegating DS-Replication-Get-Changes and DS-Replication-Get-Changes-In-Filtered-Set.
☆27Updated last year
Related projects ⓘ
Alternatives and complementary repositories for DirSync
- C# version of NTLMRawUnHide☆72Updated 2 years ago
- C# Port of LdapRelayScan☆77Updated 2 years ago
- Click Once + App Domain☆62Updated 11 months ago
- Cobalt Strike BOF for quser.exe implementation using Windows API☆83Updated last year
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 2 years ago
- Beacon Object Files (not Buffer Overflows)☆51Updated last year
- A .NET Runtime for Cobalt Strike's Beacon Object Files☆59Updated last month
- Alternative Shellcode Execution Via Callbacks in C# with P/Invoke☆72Updated last year
- ☆89Updated 2 years ago
- Enumerate information from NTLM authentication enabled web endpoints 🔎☆35Updated last year
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆66Updated last year
- A care package of useful bofs for red team engagments☆48Updated 2 years ago
- SharpElevator is a C# implementation of Elevator for UAC bypass. This UAC bypass was originally discovered by James Forshaw and publishe…☆49Updated 2 years ago
- Cobalt Strike beacon object file implementation for trusted path UAC bypass. The target executable will be called without involving "cmd.…☆118Updated 3 years ago
- WhoAmI by asking the LDAP service on a domain controller.☆58Updated 2 years ago
- ☆91Updated 2 years ago
- Spawns a process from a process. Can sometimes be used to run a session > 0 process from session 0.☆13Updated 2 years ago
- ☆24Updated 2 years ago
- ☆59Updated 4 months ago
- A technique for Active Directory domain persistence☆39Updated last year
- ☆35Updated 2 years ago
- C# implementation of Get-AADIntSyncCredentials from AADInternals, which extracts Azure AD Connect credentials to AD and Azure AD from AAD…☆36Updated last year
- Parse SDDL strings☆35Updated 7 months ago
- Get Fine Grained Password Policy☆65Updated 6 months ago
- Read the contents of MS Word Documents using Cobalt Strike's Execute-Assembly☆117Updated last month
- ☆42Updated 2 years ago
- ☆30Updated this week
- Beacon Object File allowing creation of Beacons in different sessions.☆76Updated 2 years ago
- Add Shadow Credentials to a target object by editing their msDS-KeyCredentialLink attribute☆19Updated 5 months ago
- Modified versions of the Cobalt Strike Process Injection Kit☆88Updated 10 months ago