xct / SeDebugAbuseLinks
Get SYSTEM via SeDebugPrivilege
☆24Updated 3 years ago
Alternatives and similar repositories for SeDebugAbuse
Users that are interested in SeDebugAbuse are comparing it to the libraries listed below
Sorting:
- ☆55Updated 3 years ago
- Spawns a process from a process. Can sometimes be used to run a session > 0 process from session 0.☆20Updated 3 years ago
- The program uses the Windows API functions to traverse through directories and locate DLL files with RWX section☆110Updated 2 years ago
- A small tool to convert Base64-encoded .kirbi tickets from Rubeus into .ccache files for Impacket☆72Updated 5 years ago
- Automating payload generation for OSEP labs and exam.☆34Updated 3 years ago
- C# tool to identify and exploit weaknesses within MSSQL instances in Active Directory environments☆113Updated 3 years ago
- Secretsdump C# version only supporting local (live) operation☆55Updated 9 months ago
- A simple ExternalC2 POC for Havoc C2. Communicates over Notion using a custom python agent, handler and extc2 channel. Not operationally …☆91Updated 3 years ago
- ☆18Updated last year
- An old Windows workstations LPE for domain environments without LDAP signing/channel binding.☆35Updated 2 years ago
- Generate AES128/256 Kerberos keys for an AD account using a plaintext password and Python3☆81Updated 3 years ago
- A Collection of templates that can be used for abusing window's AlwaysInstallElevated policy☆39Updated 3 years ago
- ☆88Updated 3 years ago
- ☆142Updated 3 years ago
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆89Updated 3 years ago
- ☆32Updated 2 years ago
- C# havoc implant☆101Updated 2 years ago
- Simple BOF to read the protection level of a process☆119Updated 2 years ago
- ☆75Updated 10 months ago
- SeRestorePrivilege to SYSTEM☆132Updated 4 years ago
- rcat☆75Updated 3 years ago
- ☆29Updated 3 years ago
- Exploits a flaw in Remote Desktop Plus by monitoring and decrypting temporary .rdp files in %localappdata%/Temp, revealing credentials us…☆17Updated 6 months ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆58Updated 3 years ago
- Arbitrary File Delete in Windows Installer before 10.0.19045.2193☆30Updated 3 years ago
- Alternative Shellcode Execution Via Callbacks in C# with P/Invoke☆85Updated 2 years ago
- Random☆35Updated 3 years ago
- A RunAs clone with the ability to specify the password as an argument.☆112Updated 2 years ago
- Simple C++ PoC of SeDebugPrivilege Privesc☆28Updated last year
- SAM Dumping in C#☆54Updated 2 months ago