zcgonvh / TaskSchedulerMiscLinks
Misc TaskScheduler Plays
☆238Updated 2 years ago
Alternatives and similar repositories for TaskSchedulerMisc
Users that are interested in TaskSchedulerMisc are comparing it to the libraries listed below
Sorting:
- A demo of the relevant blog post: https://www.arashparsa.com/hook-heaps-and-live-free/☆191Updated 4 years ago
- Some Service DCOM Object and SeImpersonatePrivilege abuse.☆363Updated 2 years ago
- ☆244Updated last year
- Offensive tools written for practice purposes☆162Updated 2 years ago
- Beacon.dll reverse☆141Updated 4 years ago
- GetProcAddressByHash/remap/full dll unhooking/Tartaru's Gate/Spoofing Gate/universal/Perun's Fart/Spoofing-Gate/EGG/RecycledGate/syswhisp…☆323Updated last year
- Dumping LSASS with a duplicated handle from custom LSA plugin☆201Updated 3 years ago
- more conveniently Visual-Studio-BOF-template☆69Updated 2 years ago
- Load shellcode via HELLGATE, Rewrite hellgate with .net framework for learning purpose.☆16Updated 3 years ago
- Beacon compiled using clang☆72Updated 2 years ago
- Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.☆199Updated 2 years ago
- Another shellcode runner 🦀 🐚☆149Updated 3 years ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆90Updated 2 years ago
- Load shellcode via syscall☆55Updated 4 years ago
- ☆91Updated 4 years ago
- Amaterasu terminates, or inhibits, protected processes such as application control and AV/EDR solutions by leveraging the Sysinternals Pr…☆77Updated last year
- CobaltStrike BOF - Inject ETW Bypass into Remote Process via Syscalls (HellsGate|HalosGate)☆288Updated 3 years ago
- Abuse Impersonate Privilege from Service to SYSTEM like other potatoes do☆391Updated 2 years ago
- Beacon Object File (BOF) Creation Helper☆231Updated 3 years ago
- beta☆119Updated 11 months ago
- Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.☆126Updated 3 years ago
- A Visual Studio template used to create Cobalt Strike BOFs☆314Updated 3 years ago
- Modify version of impacket wmiexec.py, get output(data,response) from registry, don't need SMB connection, also bypassing antivirus-softw…☆278Updated 2 years ago
- Go implementation of the self-deletion of an running executable from disk☆113Updated 2 years ago
- Golang evasion tool, execute-assembly .Net file☆97Updated 3 years ago
- Bypass Detection By Randomising ROR13 API Hashes☆143Updated 3 years ago
- C2 redirector base on caddy☆207Updated last year
- 基于Tinynuke修复得到的HVNC☆168Updated 4 years ago
- Exploits undocumented elevated COM interface ICMLuaUtil via process spoofing to edit registry then calls ColorDataProxy to trigger UAC b…☆140Updated 3 years ago
- An implementation of an indirect system call☆130Updated 2 years ago