sliverarmory / CS-Remote-OPs-BOFLinks
☆13Updated 11 months ago
Alternatives and similar repositories for CS-Remote-OPs-BOF
Users that are interested in CS-Remote-OPs-BOF are comparing it to the libraries listed below
Sorting:
- RPC to WebClient startup☆54Updated 5 months ago
- in-process powershell runner for BRC4☆48Updated 2 years ago
- ☆37Updated last year
- Demo code JavaScript POC that tricks user into sending Windows hash to responder☆36Updated 2 months ago
- Dump LSASS by spoofing command line arguments to procdump.☆20Updated last year
- Python3 rewrite of AsOutsider features of AADInternals☆59Updated 6 months ago
- PowerShell Implementation of ADFSDump to assist with GoldenSAML☆38Updated 2 months ago
- A VSCode devcontainer for development of COFF files with batteries included.☆50Updated 2 years ago
- ☆26Updated 6 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated last year
- Python module for running BOFs☆79Updated 2 months ago
- Click Once + App Domain☆64Updated 2 years ago
- BOF for C2 framework☆44Updated last year
- Beacon Object Files (not Buffer Overflows)☆58Updated 2 years ago
- Lockless BOF☆79Updated 9 months ago
- BOF template with boflink and mutator kit support☆49Updated last month
- ☆32Updated last year
- Bunch of BOF files☆38Updated 7 months ago
- This technique leverages PowerShell's .NET interop layer and COM automation to achieve stealthy command execution by abusing implicit typ…☆51Updated 8 months ago
- Command Augmentation support for BOFs and .NET assemblies across agents☆38Updated last month
- Local SYSTEM auth trigger for relaying - X☆155Updated 6 months ago
- ☆35Updated last year
- ClickForClickOnce - Generate configurable clickonce payloads☆88Updated 4 months ago
- ☆51Updated 7 months ago
- Sliver extension performing TCP redirection tasks without performing cross-process injection.☆68Updated last year
- Experimental PoC for unhooking API functions using in-memory patching, without VirtualProtect, for one specific EDR.☆41Updated 2 years ago
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆75Updated last year
- Rewrite to fit my needs☆32Updated last year
- Scripts to interact with Microsoft Graph APIs☆44Updated last year
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆79Updated 2 years ago