two06 / CerealKiller
.NET deserialization hunter
☆77Updated 9 months ago
Alternatives and similar repositories for CerealKiller
Users that are interested in CerealKiller are comparing it to the libraries listed below
Sorting:
- To audit the security of read-only domain controllers☆116Updated last year
- ☆54Updated 2 months ago
- ☆49Updated 2 years ago
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆112Updated last month
- Lateral Movement☆123Updated last year
- ☆106Updated 2 months ago
- Secretsdump C# version only supporting local (live) operation☆49Updated 3 weeks ago
- Library of BOFs to interact with SQL servers☆163Updated last month
- SAM Dumping in C#☆48Updated 3 months ago
- Execute commands in other Sessions☆87Updated 9 months ago
- Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.☆121Updated 7 months ago
- Lateral Movement via the .NET Profiler☆81Updated 5 months ago
- .NET Post-Exploitation Utility for Abusing Explicit Certificate Mappings in ADCS☆143Updated 3 months ago
- Cobalt Strike + Brute Ratel C4 Beacon Object File (BOF) Conversion of the Mockingjay Process Injection Technique☆153Updated last year
- Python3 rewrite of AsOutsider features of AADInternals☆46Updated 4 months ago
- An impacket-lite cli tool that combines many useful impacket functions using a single session.☆48Updated this week
- Modified versions of the Cobalt Strike Process Injection Kit☆94Updated last year
- ☆15Updated 4 months ago
- Enumerate information from NTLM authentication enabled web endpoints 🔎☆34Updated last year
- ☆86Updated last year
- TokenCert☆95Updated 5 months ago
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆57Updated this week
- ☆50Updated 6 months ago
- Tool for MSSQL relay audit and abuse☆47Updated 4 months ago
- Simple C2 using GitHub repository as comms channel.☆31Updated 6 months ago
- Adversary Emulation Framework☆98Updated 9 months ago
- Programmatically start WebClient from an unprivileged session to enable that juicy privesc.☆74Updated 2 years ago
- Run Cobalt Strike BOFs in Brute Ratel C4!☆66Updated 3 weeks ago
- Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options☆136Updated last month
- Tool to aid in dumping LSASS process remotely☆38Updated 9 months ago