testanull / ProxyNotShell-PoC
☆406Updated 2 years ago
Alternatives and similar repositories for ProxyNotShell-PoC:
Users that are interested in ProxyNotShell-PoC are comparing it to the libraries listed below
- From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller☆412Updated last month
- Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)☆271Updated 3 years ago
- Escalate Service Account To LocalSystem via Kerberos☆393Updated last year
- ☆506Updated 3 years ago
- One day based on https://googleprojectzero.blogspot.com/2022/10/rc4-is-still-considered-harmful.html☆398Updated 3 months ago
- ☆341Updated last year
- MS-FSRVP coercion abuse PoC☆282Updated 3 years ago
- DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the …☆534Updated last year
- ☆447Updated 2 years ago
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆200Updated last month
- Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).☆513Updated 11 months ago
- ☆760Updated 2 years ago
- WMEye is a post exploitation tool that uses WMI Event Filter and MSBuild Execution for lateral movement☆363Updated 3 years ago
- An other No-Fix LPE, NTLMRelay2Self over HTTP (Webdav).☆398Updated last year
- Local privilege escalation from SeImpersonatePrivilege using EfsRpc.☆309Updated 2 years ago
- Proof-of-Concept tool to authenticate to an LDAP/S server with a certificate through Schannel☆596Updated 7 months ago
- A .NET XOR encrypted cobalt strike aggressor implementation for chisel to utilize faster proxy and advanced socks5 capabilities.☆445Updated 10 months ago
- AD ACL abuse☆279Updated this week
- Fileless atexec, no more need for port 445☆354Updated 10 months ago
- Dump NTDS with golden certificates and UnPAC the hash☆632Updated 11 months ago
- Local privilege escalation via PetitPotam (Abusing impersonate privileges).☆424Updated last year
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user☆843Updated 2 years ago
- Quick python utility I wrote to turn HTTP requests from burp suite into Cobalt Strike Malleable C2 profiles☆377Updated last year
- IOXIDResolver.py from AirBus Security☆229Updated last year
- An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercer☆705Updated last year
- Python implementation for PetitPotam☆193Updated 3 years ago
- Shellcode launcher for AV bypass☆217Updated last year
- A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other ob…☆456Updated 2 years ago
- Amplify network visibility from multiple POV of other hosts☆302Updated 10 months ago
- Creating a repository with all public Beacon Object Files (BoFs)☆458Updated last year