waelmas / frameless-bitb
A new approach to Browser In The Browser (BITB) without the use of iframes, allowing the bypass of traditional framebusters implemented by login pages like Microsoft and the use with Evilginx.
☆403Updated 11 months ago
Alternatives and similar repositories for frameless-bitb
Users that are interested in frameless-bitb are comparing it to the libraries listed below
Sorting:
- Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs☆400Updated 5 months ago
- Weaponized Browser-in-the-Middle (BitM) for Penetration Testers☆500Updated last week
- Reverse engineered to remove IOCs, added Exchange Online Protection IP blacklist and bing-bot user-agent blocking, DNS configuration and …☆129Updated last month
- Amnesiac is a post-exploitation framework entirely written in PowerShell and designed to assist with lateral movement within Active Direc…☆418Updated last month
- Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework☆589Updated last week
- Active Directory Auditing and Enumeration☆451Updated this week
- ☆293Updated 2 years ago
- A SOCKS proxy written in Python that randomizes your source IP address. Round-robin your evil packets through SSH tunnels or give them bi…☆346Updated 2 months ago
- NukeAMSI is a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments.☆154Updated 4 months ago
- A tool which bypasses AMSI (AntiMalware Scan Interface) and PowerShell CLM (Constrained Language Mode) and gives you a FullLanguage Power…☆749Updated last month
- Tool to automatically exploit Active Directory privilege escalation paths shown by BloodHound☆550Updated 6 months ago
- Tool to remotely dump secrets from the Windows registry☆459Updated 2 months ago
- A system administration or post-exploitation script to automatically extract the bitlocker recovery keys from a domain.☆367Updated 3 months ago
- DPAPI looting remotely and locally in Python☆467Updated last month
- ☆302Updated 2 months ago
- ScareCrow - Payload creation framework designed around EDR bypass.☆311Updated last year
- JavaScript payload and supporting software to be used as XSS payload or post exploitation implant to monitor users as they use the target…☆362Updated 3 weeks ago
- KnowsMore is a swiss army knife tool for pentesting Microsoft Active Directory (NTLM Hashes, BloodHound, NTDS and DCSync).☆222Updated last month
- ☆349Updated 2 weeks ago
- ☆164Updated last month
- A RedTeam Toolkit☆397Updated last month
- ☆192Updated 7 months ago
- A script to generate AV evaded(static) DLL shellcode loader with AES encryption.☆129Updated last month
- ☆298Updated 2 months ago
- Initial Access and Post-Exploitation Tool for AAD and O365 with a browser-based GUI☆707Updated this week
- ☆542Updated last year
- Generate FUD backdoors☆248Updated 2 years ago
- Malicious shortcut generator for collecting NTLM hashes from insecure file shares.☆331Updated 6 months ago
- Bounces when a fish bites - Evilginx database monitoring with exfiltration automation☆168Updated 11 months ago
- MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.☆518Updated 3 weeks ago