wietze / Invoke-ArgFuscatorLinks
Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-native executables.
☆249Updated 6 months ago
Alternatives and similar repositories for Invoke-ArgFuscator
Users that are interested in Invoke-ArgFuscator are comparing it to the libraries listed below
Sorting:
- Find potential DLL Sideloads on your windows computer☆214Updated 9 months ago
- .NET post-exploitation toolkit for Active Directory reconnaissance and exploitation☆395Updated 3 months ago
- ☆326Updated 2 months ago
- SoaPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) from Linux hosts.☆251Updated 8 months ago
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆381Updated 3 weeks ago
- lolC2 is a collection of C2 frameworks that leverage legitimate services to evade detection☆245Updated 4 months ago
- EDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.☆673Updated 2 weeks ago
- Tool designed to find folder exclusions using Windows Defender using command line utility MpCmdRun.exe as a low privileged user, without …☆218Updated last year
- Execute commands interactively on remote Windows machines using the WinRM protocol☆247Updated last week
- Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data☆325Updated last month
- Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel☆315Updated last week
- AV/EDR Lab environment setup references to help in Malware development☆409Updated 8 months ago
- SharpSuccessor is a .NET Proof of Concept (POC) for fully weaponizing Yuval Gordon’s (@YuG0rd) BadSuccessor attack from Akamai.☆339Updated 3 weeks ago
- MaLDAPtive is a framework for LDAP SearchFilter parsing, obfuscation, deobfuscation and detection.☆312Updated last year
- PowerShell scripts for alternative SharpHound enumeration, including users, groups, computers, and certificates, using the ActiveDirector…☆385Updated 5 months ago
- ☆201Updated 5 months ago
- ☆211Updated 4 months ago
- ☆305Updated 7 months ago
- "AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS☆307Updated 3 weeks ago
- Weaponizing DCOM for NTLM Authentication Coercions☆267Updated 3 months ago
- A BloodHound collector for Microsoft Configuration Manager☆348Updated 3 months ago
- The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).☆328Updated 11 months ago
- Various resources to enhance Cobalt Strike's functionality and its ability to evade antivirus/EDR detection☆316Updated last year
- ☆153Updated 6 months ago
- LudusHound is a tool for red and blue teams that transforms BloodHound data into a fully functional, Active Directory replica environment…☆322Updated last month
- Python implementation of GhostPack's Seatbelt situational awareness tool☆266Updated 11 months ago
- NukeAMSI is a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments.☆169Updated 3 months ago
- A script to generate AV evaded(static) DLL shellcode loader with AES encryption.☆137Updated 6 months ago
- ☆289Updated 2 years ago
- ☆183Updated 4 months ago