wh0amitz / BypassCredGuard
Credential Guard Bypass Via Patching Wdigest Memory
☆310Updated last year
Related projects ⓘ
Alternatives and complementary repositories for BypassCredGuard
- A beacon object file implementation of PoolParty Process Injection Technique.☆324Updated 10 months ago
- A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk☆428Updated 4 months ago
- Weaponized HellsGate/SigFlip☆194Updated last year
- Terminate AV/EDR Processes using kernel driver☆337Updated last year
- Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime☆298Updated last year
- Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.☆266Updated 7 months ago
- A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.☆292Updated 2 years ago
- Bypassing UAC with SSPI Datagram Contexts☆412Updated last year
- Dumping LSASS with a duplicated handle from custom LSA plugin☆199Updated 2 years ago
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆227Updated 5 months ago
- Fileless atexec, no more need for port 445☆325Updated 7 months ago
- Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry☆285Updated 3 months ago
- Execute shellcode files with rundll32☆184Updated 9 months ago
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆365Updated 5 months ago
- A list of python tools to help create an OPSEC-safe Cobalt Strike profile.☆374Updated 8 months ago
- A BOF to automate common persistence tasks for red teamers☆266Updated last year
- COM Hijacking VOODOO☆257Updated 8 months ago
- A Stealthy Lsass Dumper - can abuse ProcExp152.sys driver to dump PPL Lsass, no dbghelp.lib calls.☆313Updated last year
- Patching AmsiOpenSession by forcing an error branching☆144Updated last year
- Lockbit3.0 Microsoft Defender MpClient.dll DLL Hijacking PoC☆171Updated 2 years ago
- Collection of Beacon Object Files (BOF) for Cobalt Strike☆540Updated 4 months ago
- Kill AV/EDR leveraging BYOVD attack☆309Updated last year
- ☆314Updated last year
- Attempt at Obfuscated version of SharpCollection☆189Updated last week
- Creating a repository with all public Beacon Object Files (BoFs)☆421Updated last year
- Collection of UAC Bypass Techniques Weaponized as BOFs☆408Updated 8 months ago
- .NET assembly loader with patchless AMSI and ETW bypass☆278Updated last year