xct / SeRestoreAbuseLinks
SeRestorePrivilege to SYSTEM
☆128Updated 4 years ago
Alternatives and similar repositories for SeRestoreAbuse
Users that are interested in SeRestoreAbuse are comparing it to the libraries listed below
Sorting:
- SeManageVolumePrivilege to SYSTEM☆140Updated last year
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆86Updated 3 years ago
- Useful Cobalt Strike Beacon Object Files (BOFs) used during red teaming and penetration testing engagements.☆129Updated 3 years ago
- A collection of code snippets built to assist with breaking chains.☆125Updated last year
- PoC to coerce authentication from Windows hosts using MS-WSP☆296Updated 2 years ago
- A variety of AV evasion techniques written in C# for practice.☆97Updated 4 years ago
- Attempt at Obfuscated version of SharpCollection☆226Updated 3 weeks ago
- AV Evasion Techniques☆80Updated 3 years ago
- Powershell version of SharpGPOAbuse☆87Updated 4 years ago
- A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.☆132Updated 2 years ago
- Buggy script to play with GPOs☆118Updated 10 months ago
- Determine if the WebClient Service (WebDAV) is running on a remote system☆140Updated last year
- rcat☆72Updated 3 years ago
- Payload Generation Framework☆95Updated last year
- Patching AmsiOpenSession by forcing an error branching☆150Updated 2 years ago
- Patch AMSI and ETW☆247Updated last year
- My implementation of the GIUDA project in C++☆187Updated 2 years ago
- Code dump from PEN-300/OSEP updated 2022☆42Updated 3 years ago
- Python tool to Check running WebClient services on multiple targets based on @leechristensen☆282Updated 4 years ago
- The Official Sliver Armory☆118Updated 6 months ago
- A small tool to convert Base64-encoded .kirbi tickets from Rubeus into .ccache files for Impacket☆68Updated 5 years ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆176Updated 2 years ago
- PrintNightmare (CVE-2021-34527) PoC Exploit☆117Updated 2 years ago
- C# POC to extract NetNTLMv1/v2 hashes from ETW provider☆259Updated 2 years ago
- Impacket is a collection of Python classes for working with network protocols.☆75Updated last year
- A tool for developing bad character-free shellcode to bypass DEP with WriteProcessMemory (32-bit only)☆69Updated 3 years ago
- PowerShell runner for executing malicious payloads in order to bypass Windows Defender.☆73Updated 3 years ago
- ADCS cert template modification and ACL enumeration☆143Updated 2 years ago
- ☆167Updated 2 years ago
- A tool for enumerating potential hosts that are open to GSSAPI abuse within Active Directory networks☆175Updated 2 months ago