SCShell Public
Forked from Mr-Un1k0d3r/SCShellFileless lateral movement tool that relies on ChangeServiceConfigA to run command
C UpdatedMar 13, 2021 -
HomeDirectory Public
Leverage existing 'GenericAll' AD rights over an object ie: user to set their profile to an attacker smb server ie: ntlmrelayx to dump hashes, relay, crack.
C# UpdatedFeb 9, 2021 -
InlineWhispers Public
Forked from outflanknl/InlineWhispersTool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF)
Assembly UpdatedJan 13, 2021 -
gowitness Public
Forked from sensepost/gowitness🔍 gowitness - a golang, web screenshot utility using Chrome Headless
Go GNU General Public License v3.0 UpdatedNov 11, 2020 -
SharpBlock Public
Forked from CCob/SharpBlockA method of bypassing EDR's active projection DLL's by preventing entry point exection
C# UpdatedAug 31, 2020 -
ScheduleMe Public
The ScheduleMe project is part of establishing persistence via the WptsExtensions.dll DLL hijack.
LightsOut Public
PE Header, ETW, AMSI Evasion .net library (dll) utilizing SharpSploits' DInvoke to build / add to payloads
C# GNU General Public License v3.0 UpdatedAug 25, 2020 -
OffensiveCSharp Public
Forked from matterpreter/OffensiveCSharpCollection of Offensive C# Tooling
C# UpdatedAug 13, 2020 -
PEzor Public
Forked from phra/PEzorRead the blog post here: https://iwantmore.pizza/posts/PEzor.html
C GNU General Public License v3.0 UpdatedJul 23, 2020 -
x0rro Public
Forked from phra/x0rroA PE/ELF/MachO Crypter for x86 and x86_64 Based on Radare2
TypeScript UpdatedJul 21, 2020 -
RuralBishop Public
Forked from rasta-mouse/RuralBishopD/Invoke port of UrbanBishop
C# BSD 3-Clause "New" or "Revised" License UpdatedJul 19, 2020 -
SharpCollection Public
Forked from Flangvik/SharpCollectionNightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps release pipelines.
UpdatedJul 13, 2020 -
WSMan-WinRM Public
Forked from bohops/WSMan-WinRMA collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object
C++ BSD 3-Clause "New" or "Revised" License UpdatedJul 10, 2020 -
sgn Public
Forked from EgeBalci/sgnShikata ga nai (仕方がない) encoder ported into go with several improvements
Go MIT License UpdatedJul 7, 2020 -
NetLoader Public
Forked from Flangvik/NetLoaderLoads any C# binary in mem, patching AMSI and bypassing Windows Defender
C# UpdatedJul 2, 2020 -
SharpSploit Public
Forked from cobbr/SharpSploitSharpSploit is a .NET post-exploitation library written in C#
C# BSD 3-Clause "New" or "Revised" License UpdatedJun 29, 2020 -
Evasor Public
Forked from cyberark/EvasorA tool to be used in post exploitation phase for blue and red teams to bypass APPLICATIONCONTROL policies
C# Apache License 2.0 UpdatedJun 25, 2020 -
Sharp-Suite Public
Forked from FuzzySecurity/Sharp-SuiteMy musings with C#
C# BSD 3-Clause "New" or "Revised" License UpdatedJun 15, 2020 -
UsoDllLoader Public
Forked from itm4n/UsoDllLoaderWindows - Weaponizing privileged file writes with the Update Session Orchestrator service
C++ UpdatedJun 6, 2020 -
Sniper Public
Forked from dmchell/SniperA simple proof of concept for detecting use of Cobalt Strike's execute-assembly
C# UpdatedJun 2, 2020 -
GadgetToJScript Public
Forked from rasta-mouse/GadgetToJScriptA tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.
C# GNU General Public License v3.0 UpdatedApr 20, 2020 -
darkarmour Public
Forked from bats3c/darkarmourWindows AV Evasion
Python MIT License UpdatedApr 13, 2020 -
Ghost-In-The-Logs Public
Forked from bats3c/Ghost-In-The-LogsEvade sysmon and windows event logging
C MIT License UpdatedApr 8, 2020 -
RemoteProcessInjection Public
Forked from Mr-Un1k0d3r/RemoteProcessInjectionC# remote process injection utility for Cobalt Strike
C# UpdatedMar 9, 2020 -
OffensiveDLR Public
Forked from byt3bl33d3r/OffensiveDLRToolbox containing research notes & PoC code for weaponizing .NET's DLR
PowerShell BSD 3-Clause "New" or "Revised" License UpdatedFeb 4, 2020 -
SharpGen Public
Forked from cobbr/SharpGenSharpGen is a .NET Core console application that utilizes the Rosyln C# compiler to quickly cross-compile .NET Framework console applications or libraries.
C# BSD 3-Clause "New" or "Revised" License UpdatedDec 29, 2019 -