c3c4's repositories
ZheTian
::ZheTian Powerful Anti Anti-Virus Trojan horse generator / 强大的免杀木马生成器。静态Bypass All.
Go_Bypass
Golang Bypass Av Generator template
PrivescCheck
Privilege Escalation Enumeration Script for Windows
bypassAV
借助Win-PS2EXE项目编写cna脚本方便快速生成免杀可执行文件
KrbRelayUp
KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).
KrbRelay
Framework for Kerberos relaying
juicy_2
juicypotato for win10 > 1803 & win server 2019
CVE-2021-1732-Exploit
CVE-2021-1732 Exploit
noPac
CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.
vulmap
Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能
Gr33k
图形化漏洞利用集成工具
SharpDecryptPwd
对密码已保存在 Windwos 系统上的部分程序进行解析,包括:Navicat,TeamViewer,FileZilla,WinSCP,Xmangager系列产品(Xshell,Xftp)。源码:https://github.com/RowTeam/SharpDecryptPwd
ADCollector
A lightweight tool to quickly extract valuable information from the Active Directory environment for both attacking and defending.
Malleable-C2-Profiles
Cobalt Strike - Malleable C2 Profiles. A collection of profiles used in different projects using Cobalt Strike https://www.cobaltstrike.com/.
presshell
🚪 Quick & dirty Wordpress Command Execution Shell
CallbackHell
Exploit for CVE-2021-40449 - Win32k Elevation of Privilege Vulnerability (LPE)
SILENTTRINITY
An asynchronous, collaborative post-exploitation agent powered by Python and .NET's DLR
WMIHACKER
A Bypass Anti-virus Software Lateral Movement Command Execution Tool
PrintNightmare-CVE-2021-34527
PrintNightmare - Windows Print Spooler RCE/LPE Vulnerability (CVE-2021-34527, CVE-2021-1675) proof of concept exploits
some_paper_collect
Collection of some articles
SchTask_0x727
创建隐藏计划任务,权限维持,Bypass AV
sharpwmi
sharpwmi是一个基于rpc的横向移动工具,具有上传文件和执行命令功能。
ItWasAllADream
A PrintNightmare (CVE-2021-34527) Python Scanner. Scan entire subnets for hosts vulnerable to the PrintNightmare RCE
SharpNoPSExec
Get file less command execution for lateral movement.
domainTools
内网域渗透小工具
SharpRDPBatch
批量检查远程桌面密码或ntlm是否正确
ShellCodeFramework
绕3环的shellcode免杀框架
JsLoader
js免杀shellcode,绕过杀毒添加自启