tihanyin / PSSW100AVBLinks
A list of useful Powershell scripts with 100% AV bypass (At the time of publication).
☆1,171Updated 9 months ago
Alternatives and similar repositories for PSSW100AVB
Users that are interested in PSSW100AVB are comparing it to the libraries listed below
Sorting:
- Another Windows Local Privilege Escalation from Service Account to System☆924Updated 3 years ago
- The swiss army knife of LSASS dumping☆2,026Updated last year
- A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techni…☆1,311Updated 2 years ago
- Exploit for CVE-2022-21999 - Windows Print Spooler Elevation of Privilege Vulnerability (LPE)☆797Updated 3 years ago
- Some notes and examples for cobalt strike's functionality☆1,117Updated 3 years ago
- evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)☆1,495Updated last year
- KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default…☆1,616Updated 3 years ago
- ☆1,641Updated 7 months ago
- A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file form…☆1,039Updated last year
- The Hunt for Malicious Strings☆1,314Updated 6 months ago
- BloodyAD is an Active Directory Privilege Escalation Framework☆1,993Updated 3 weeks ago
- Dominate Active Directory with PowerShell.☆1,112Updated this week
- EXOCET - AV-evading, undetectable, payload delivery tool☆846Updated 3 years ago
- A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.☆2,137Updated 2 months ago
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user☆1,036Updated 3 years ago
- Pure PowerShell implementation of CVE-2021-1675 Print Spooler Local Privilege Escalation (PrintNightmare)☆1,076Updated 4 years ago
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆1,462Updated 2 years ago
- Collection of PowerShell functions a Red Teamer may use in an engagement☆542Updated last year
- Dumping DPAPI credz remotely☆1,272Updated 7 months ago
- Python version of the C# tool for "Shadow Credentials" attacks☆818Updated 2 months ago
- Simple & Powerful PowerShell Script Obfuscator☆585Updated 6 months ago
- Collection of PoC and offensive techniques used by the BlackArrow Red Team☆1,138Updated last year
- Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs☆1,231Updated 2 years ago
- ☆471Updated last year
- A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.☆553Updated 4 years ago
- Sandman is a NTP based backdoor for hardened networks.☆811Updated last year
- A simple python packer to easily bypass Windows Defender☆648Updated 3 years ago
- A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.☆768Updated last month
- ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound via BOFHound, and also supports full-ob…☆1,011Updated this week
- Windows AV Evasion☆818Updated 5 years ago