xpn / getsystem-offlineLinks
Small tool to get a SYSTEM shell
☆129Updated 9 years ago
Alternatives and similar repositories for getsystem-offline
Users that are interested in getsystem-offline are comparing it to the libraries listed below
Sorting:
- Proof of concept exploit of Windows Update Orchestrator Service Elevation of Privilege Vulnerability☆125Updated 5 years ago
- A tool to run .Net DLLs from the command line☆105Updated 7 years ago
- Weaponizing for Arbitrary Files/Directories Delete bugs to Get NT AUTHORITY\SYSTEM☆123Updated 5 years ago
- WMI Event Subscription Persistence in C#☆112Updated 6 years ago
- C# Shellcode Runner to execute shellcode via CreateRemoteThread and SetThreadContext to evade Get-InjectedThread☆119Updated 6 years ago
- Windows 10 Privilege Escalation (magnifier.exe) via Dll Search Order Hijacking☆142Updated 5 years ago
- ReaCOM has got a lot of tools to use and is related to component object model☆74Updated 5 years ago
- POC for Cobalt Strike external C2☆141Updated 4 years ago
- POC for NetworkService PrivEsc☆127Updated 5 years ago
- ☆114Updated 5 years ago
- A Collection of In-Memory Shellcode Execution Techniques for Windows☆151Updated 6 years ago
- ☆154Updated 5 years ago
- ☆53Updated 7 years ago
- External C2 Using IE COM Objects☆102Updated 6 years ago
- signed-loaders documents Windows executables that can be used for side-loading DLLs.☆70Updated 7 years ago
- Yet another LSASS dumper☆74Updated 5 years ago
- Shellcode injector using direct syscalls☆123Updated 5 years ago
- Windows 10 CDPSvc DLL Hijacking - From LOCAL SERVICE to SYSTEM☆115Updated 6 years ago
- SharpTask is a simple code set to interact with the Task Scheduler service api and is compatible with Cobalt Strike.☆93Updated 4 years ago
- APT || Execution || Launch || APTs || ( Authors harr0ey, bohops )☆110Updated 7 years ago
- Use CLR to inject all the .NET apps☆183Updated 4 years ago
- SharpClipHistory is a .NET application written in C# that can be used to read the contents of a user's clipboard history in Windows 10 st…☆198Updated 5 years ago
- Scripts for performing and detecting parent PID spoofing☆146Updated 5 years ago
- Collection of scripts, binaries and the like to aid in WhiteList Evasion on a Microsoft Windows Network.☆126Updated 10 years ago
- Use powershell to test Office-based persistence methods☆76Updated 4 years ago
- Proof-of-concept code for various bugs☆112Updated last year
- .NET 4.0 WinRM API Command Execution☆166Updated 5 years ago
- CVE-2019-1064 Local Privilege Escalation Vulnerability☆26Updated 6 years ago
- Using DInvoke to patch AMSI.dll in order to bypass AMSI detections triggered when loading .NET tradecraft via Assembly.Load().☆218Updated 5 years ago
- use COM Object hijacking to maintain persistence.(Hijack CAccPropServicesClass and MMDeviceEnumerator)☆60Updated 8 years ago