weaselsec / ClickOnce-AppDomain-Manager-Injection
Click Once + App Domain
☆62Updated last year
Alternatives and similar repositories for ClickOnce-AppDomain-Manager-Injection:
Users that are interested in ClickOnce-AppDomain-Manager-Injection are comparing it to the libraries listed below
- A care package of useful bofs for red team engagments☆54Updated 2 months ago
- Run Cobalt Strike BOFs in Brute Ratel C4!☆61Updated last month
- Beacon Object Files (not Buffer Overflows)☆53Updated last year
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆38Updated 7 months ago
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆68Updated 9 months ago
- ☆28Updated 5 months ago
- Modified versions of the Cobalt Strike Process Injection Kit☆92Updated last year
- Cobalt Strike UDRL for memory scanner evasion.☆46Updated last year
- SAM Dumping in C#☆41Updated last month
- Lockless BOF☆63Updated last week
- ☆47Updated last year
- Simple .NET loader for loading and executing Powershell payloads☆16Updated 3 years ago
- Cobalt Strike beacon object file that allows you to query and make changes to the Windows Registry☆26Updated 4 years ago
- Experimental PoC for unhooking API functions using in-memory patching, without VirtualProtect, for one specific EDR.☆39Updated last year
- Rewrite to fit my needs☆27Updated 6 months ago
- ☆99Updated 9 months ago
- Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain☆33Updated last year
- DLL proxy load example using the Windows thread pool API, I/O completion callback with named pipes, and C++/assembly☆59Updated 10 months ago
- A VSCode devcontainer for development of COFF files with batteries included.☆47Updated last year
- ☆51Updated last month
- Cobalt Strike Beacon Object File (BOF) that uses CredUIPromptForWindowsCredentials API to invoke credential prompt☆18Updated 2 years ago
- Lateral Movement via the .NET Profiler☆79Updated 2 months ago
- SOCKS5 over WebSockets and HTTP☆14Updated last month
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆69Updated 3 weeks ago
- Enumerate information from NTLM authentication enabled web endpoints 🔎☆35Updated last year
- ☆36Updated 2 years ago
- Bunch of BOF files☆27Updated last month
- Cobalt Strike BOF for quser.exe implementation using Windows API☆83Updated last year
- ☆93Updated 5 months ago