xorrior / macOSTools
macOS Offensive Tools
☆265Updated last year
Alternatives and similar repositories for macOSTools:
Users that are interested in macOSTools are comparing it to the libraries listed below
- macOS persistence tool☆221Updated 3 years ago
- Collection of macOS persistence methods and miscellaneous tools in JXA☆269Updated last year
- Proof of concept MacOS post exploitation tool written in Swift. Designed as a POC for blue teams to build macOS detections. Author: Cedri…☆120Updated 4 years ago
- macOS Initial Access Payload Generator☆301Updated last year
- Objective-C library and console to interact with Heimdal APIs for macOS Kerberos☆146Updated last year
- A macOS enumeration tool inspired by harmjoy's Windows-based Seatbelt enumeration tool. Author: Cedric Owens☆331Updated 2 years ago
- Tracking of offensive macOS tooling, blogs, and related helpful information☆159Updated 3 months ago
- ☆99Updated 4 years ago
- Unit tests for blue teams to aid with building detections for some common macOS post exploitation methods.☆106Updated 2 years ago
- Encrypted exploit delivery for the masses☆263Updated 5 years ago
- Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.☆224Updated 5 years ago
- Apfell Golang macOS/Linux/Windows implant☆88Updated 3 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆145Updated 5 years ago
- A repository of previous info-sec presentations I've presented.☆159Updated 4 months ago
- Provides In-memory compilation and reflective loading of C# apps for AV evasion.☆368Updated last year
- Neutering Sysmon via driver unload☆225Updated 2 years ago
- A meterpreter extension for applying hooks to avoid windows defender memory scans☆243Updated 4 years ago
- ☆467Updated last year
- A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.☆297Updated last year
- DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and…☆209Updated 4 years ago
- Swift 5 macOS agent☆101Updated 7 months ago
- Python interpreter for Cobalt Strike Malleable C2 Profiles. Allows you to parse, build and modify them programmatically.☆272Updated 4 months ago
- A collection of scripts for dealing with Cobalt Strike beacons in Python☆168Updated 4 years ago
- PoC☆209Updated last month
- Tools for discovery and abuse of COM hijacks☆300Updated 5 years ago
- PoC of a VBA macro spawning a process with a spoofed parent and command line.☆380Updated 4 years ago
- ☆257Updated last year
- FLARE Kernel Shellcode Loader☆176Updated 5 years ago
- Execute MachO binaries in memory using CGo☆79Updated 3 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆254Updated 3 years ago