Steal privileged token to obtain SYSTEM shell
☆253Jul 14, 2020Updated 5 years ago
Alternatives and similar repositories for SystemToken
Users that are interested in SystemToken are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- WINDOWS TELEMETRY权限维持☆258Jul 2, 2020Updated 5 years ago
- Use to check the valid account of the Remote Desktop Protocol(Support plaintext and ntlmhash)☆167May 14, 2020Updated 6 years ago
- 修改的SweetPotato,使之可以用于CobaltStrike v4.0☆246Apr 30, 2020Updated 6 years ago
- ☆159Aug 4, 2020Updated 5 years ago
- sharpwmi是一个基于rpc的横向移动工具,具有上传文件和执行命令功能。☆715Aug 3, 2021Updated 4 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Windows 10 UAC bypass for all executable files which are autoelevate true .☆640Dec 9, 2019Updated 6 years ago
- 利用NTLM Hash读取Exchange邮件☆443Mar 23, 2026Updated last month
- .NET 4.0 Scheduled Job Lateral Movement☆90Aug 25, 2020Updated 5 years ago
- reGeorg的特殊版本,适用于老版本weblogic。☆151Apr 30, 2020Updated 6 years ago
- CVE-2020-1066-EXP支持Windows 7和Windows Server 2008 R2操作系统☆186Jun 17, 2020Updated 5 years ago
- Support ALL Windows Version☆721Sep 11, 2020Updated 5 years ago
- webshell下提权执行命令 Reference//github.com/yusufqk/SystemToken☆206Apr 22, 2020Updated 6 years ago
- SharpAddDomainMachine☆69Oct 12, 2021Updated 4 years ago
- C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection☆250Mar 31, 2021Updated 5 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Cobalt Strike插件 - RDP日志取证&清除☆363Dec 23, 2019Updated 6 years ago
- A Bypass Anti-virus Software Lateral Movement Command Execution Tool☆1,466Jan 20, 2025Updated last year
- A proof-of-concept Remote Desktop (RDP) session hijack utility☆502Nov 28, 2024Updated last year
- c# implementation of Active Directory Integrated DNS dumping (authenticated user)☆207May 25, 2021Updated 4 years ago
- 创建服务持久化☆108Apr 26, 2021Updated 5 years ago
- 读取登录过本机的登录失败或登录成功的所有计算机信息,在内网渗透中快速定位运维管理人员。☆222Sep 30, 2019Updated 6 years ago
- CobaltStrike Beacon written in .Net 4 用.net重写了stager及Beacon,其中包括正常上线、文件管理、进程管理、令牌管理、结合SysCall进行注入、原生端口转发、关ETW等一系列功能☆729Sep 1, 2021Updated 4 years ago
- Modifying SweetPotato to support load shellcode and webshell☆791Jun 2, 2021Updated 4 years ago
- .NET Project for performing Authenticated Remote Execution☆406Feb 8, 2023Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- 内网渗透中常用的c#程序整合成cs脚本,直接内存加载。持续更新~☆500Feb 13, 2020Updated 6 years ago
- Create a minidump of the LSASS process from memory☆259Nov 2, 2022Updated 3 years ago
- .NET 4.0 WinRM API Command Execution☆165Sep 11, 2020Updated 5 years ago
- 这是一个一键辅助抓取360安全浏览器密码的CobaltStrike脚本以及解密小工具,用于节省红队工作量,通过下载浏览器数据库、记录密钥来离线解密浏览器密码。☆636Apr 4, 2021Updated 5 years ago
- Command line interface to dump LSASS memory to disk via SilentProcessExit☆456Dec 23, 2020Updated 5 years ago
- Standalone version of my AES Powershell payload for Cobalt Strike.☆111Dec 27, 2019Updated 6 years ago
- cobalt strike 自用脚本☆29Oct 29, 2020Updated 5 years ago
- js免杀shellcode,绕过杀毒添加自启☆353Mar 16, 2021Updated 5 years ago
- Local Service to SYSTEM privilege escalation from Windows 7 to Windows 10 / Server 2019☆1,821Sep 4, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PoC for UUID shellcode execution using DInvoke☆156Mar 8, 2021Updated 5 years ago
- anti AV☆291Mar 12, 2020Updated 6 years ago
- 一款可以在不出网的环境下进行反向代理及cs上线的工具☆492Apr 26, 2023Updated 3 years ago
- 这个脚本主要提供对Exchange邮件服务器的账户爆破功能,集成了现有主流接口的爆破方式。☆340May 22, 2023Updated 3 years ago
- Use ICMLuaUtil to Bypass UAC!☆638Apr 19, 2020Updated 6 years ago
- A native backdoor module for Microsoft IIS (Internet Information Services)☆554Jul 3, 2020Updated 5 years ago
- 防火墙出网探测工具,内网穿透型socks5代理☆270Nov 12, 2021Updated 4 years ago