ttpreport / ligolo-mp
Multiplayer pivoting solution
☆118Updated 7 months ago
Related projects ⓘ
Alternatives and complementary repositories for ligolo-mp
- Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs☆64Updated last year
- PoC to coerce authentication from Windows hosts using MS-WSP☆222Updated last year
- Leak of any user's NetNTLM hash. Fixed in KB5040434☆239Updated 2 months ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆155Updated 3 weeks ago
- The Official Sliver Armory☆82Updated 3 months ago
- Attempt at Obfuscated version of SharpCollection☆188Updated last month
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆95Updated last year
- The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).☆262Updated this week
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆250Updated last year
- Execute shellcode files with rundll32☆181Updated 9 months ago
- ☆154Updated 3 months ago
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆146Updated 6 months ago
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆264Updated 3 months ago
- BOF for Kerberos abuse (an implementation of some important features of the Rubeus).☆389Updated this week
- A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.☆124Updated last year
- ☆207Updated 6 months ago
- My implementation of the GIUDA project in C++☆155Updated last year
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆143Updated 6 months ago
- GregsBestFriend process injection code created from the White Knight Labs Offensive Development course☆171Updated last year
- C2 infrastructure that allows Red Teamers to execute system commands on compromised hosts through Microsoft Teams.☆49Updated this week
- ☆181Updated 7 months ago
- SHELLSILO is a cutting-edge tool that translates C syntax into syscall assembly and its corresponding shellcode. It streamlines the proce…☆124Updated this week
- Shaco is a linux agent for havoc☆145Updated last year
- Patching AmsiOpenSession by forcing an error branching☆143Updated last year
- ☆112Updated last year
- Evasive Golang Loader☆130Updated 3 months ago
- ☆176Updated last month
- Leverage WindowsApp createdump tool to obtain an lsass dump☆141Updated last month
- Impacket is a collection of Python classes for working with network protocols.☆67Updated 2 months ago
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆135Updated last week