☆58Apr 30, 2025Updated last year
Alternatives and similar repositories for LSASS-Forked-Dump---Bypass-EDR-CrowdStrike
Users that are interested in LSASS-Forked-Dump---Bypass-EDR-CrowdStrike are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Windows Access token manipulation tool made in C#☆25Aug 24, 2025Updated last year
- PPLReaper is a Windows UNSIGNED kernel driver + userland companion tool designed to inspect and manipulate Protected Process Light (PPL) …☆25Mar 4, 2026Updated 6 months ago
- Adjusted version of the impacket-dcomexec script to work against Windows 10☆18Oct 13, 2025Updated 11 months ago
- A powerful Windows command-line tool for analyzing and searching ETW (Event Tracing for Windows) provider permissions from the Windows re…☆92Jul 29, 2025Updated last year
- Shellcode Loader using indirect syscalls☆16Jan 21, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Evasive loader to bypass static detection☆57Jan 15, 2024Updated 2 years ago
- Nim Shellcode Injector☆15Jan 24, 2021Updated 5 years ago
- Enumerate active EDR's on the system☆154Sep 23, 2025Updated last year
- Ghosting-AMSI☆249Apr 24, 2025Updated last year
- Beacon Object File (BOF) for identifying dependent child services of a given parent.☆18Jun 20, 2025Updated last year
- This C# tool sprays for admin access over the entire domain☆90Dec 7, 2025Updated 9 months ago
- Context-aware Nmap reconnaissance framework with traffic intelligence and AD awareness☆26Feb 4, 2026Updated 7 months ago
- Help red teams find opsec processes during engagements☆44Dec 7, 2024Updated last year
- Evasive loader for .NET Framework assemblies☆51May 14, 2026Updated 4 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆51May 4, 2025Updated last year
- this repo contains all nuclei templates for particular vulnerability that i used mosty while hunting..☆13Aug 15, 2024Updated 2 years ago
- Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege☆229Nov 23, 2023Updated 2 years ago
- A python script that automates a C2 Profile build☆49Jul 21, 2026Updated 2 months ago
- Command and Control Framework using powershell implants☆36Jun 17, 2025Updated last year
- ☆50Oct 14, 2025Updated 11 months ago
- Basic Linux binary shim method on the passwd binary from the shadow package to steal credentials as they are changed.☆14Nov 14, 2024Updated last year
- BOF to run PE in Cobalt Strike Beacon without console creation☆198Nov 23, 2025Updated 10 months ago
- AppLocker-Based EDR Neutralization☆343Dec 19, 2025Updated 9 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Assess the security of your Active Directory with few or all privileges.☆386Sep 13, 2026Updated 2 weeks ago
- Python tool to interact with WMI StdRegProv☆61Nov 19, 2024Updated last year
- A Cobalt Strike RL built with Crystal Palac; module overloading, NtContinue entry transfer, call stack spoofing, sleep masking, and stati…☆260Mar 15, 2026Updated 6 months ago
- SharpDPAPI ported to Cobalt Strike BOFs — 19 self-contained BOFs for DPAPI credential triage☆18Feb 24, 2026Updated 7 months ago
- Early cascade injection PoC based on Outflanks blog post written in Rust☆67Dec 26, 2025Updated 9 months ago
- Cobalt Strike notifications via NTFY.☆15Sep 24, 2024Updated 2 years ago
- PEN-300 collection to help you on your exam.☆14Apr 19, 2022Updated 4 years ago
- MalwareScan is a lightweight and fast malware scanner written in Python. It supports both Windows and Linux platforms and provides an ope…☆13Jun 2, 2025Updated last year
- A Windows tool that converts LDIF files to BloodHound CE☆31Dec 20, 2025Updated 9 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A Python script to find tenant id an region from a list of domain names.☆22Jan 31, 2025Updated last year
- lsassdump via RtlCreateProcessReflection and NanoDump☆85Oct 18, 2024Updated last year
- Reflective DLL loader.☆26Jun 30, 2026Updated 3 months ago
- Patchless AMSI + ETW bypass via PAGE_GUARD exceptions and Vectored Exception Handler (VEH)☆15Mar 24, 2026Updated 6 months ago
- ☆51Jun 12, 2026Updated 3 months ago
- Generate an Alphabetical Polymorphic Shellcode☆147Aug 19, 2025Updated last year
- Patches the AmsiScan function in clr.dll allowing for unrestricted assembly loading in .NET☆51May 5, 2025Updated last year