endymi

endymi

Geek Repo

Github PK Tool:Github PK Tool

endymi's repositories

PoolPartyBof

A beacon object file implementation of PoolParty Process Injection Technique.

Language:CStargazers:1Issues:0Issues:0

amd-ryzen-master-driver-v17-exploit

Cobalt Strike (CS) Beacon Object File (BOF) for kernel exploitation using AMD's Ryzen Master Driver (version 17).

Language:CLicense:MITStargazers:0Issues:0Issues:0

ASRenum-BOF

Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations

Language:C++Stargazers:0Issues:0Issues:0

badgerDAPS

Brute Ratel LDAP filtering and sorting tool. Easily take BR log output and pull hostnames for ease of use with other red team tooling. Supports OU filtering and removes disabled hosts.

Language:PythonStargazers:0Issues:0Issues:0

bof-collection

Collection of Beacon Object Files (BOF) for Cobalt Strike

Stargazers:0Issues:0Issues:0

BOF-CredUI

Cobalt Strike Beacon Object File (BOF) that uses CredUIPromptForWindowsCredentials API to invoke credential prompt

Stargazers:0Issues:0Issues:0

BOF-DCOMPotato-PrintNotify

Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object to DCOM call of PrintNotify.

Stargazers:0Issues:0Issues:0

BOF-RemoteRegSave

Cobalt Strike Beacon Object File (BOF) that uses RegConnectRegistryA + RegOpenKeyExA API to dump registry hives on remote computer

Stargazers:0Issues:0Issues:0

BOF-SprayAD

Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray

Stargazers:0Issues:0Issues:0

BOFs-Ransomware-

Collection of personal Beacon Object Files (BOFs)

Stargazers:0Issues:0Issues:0

BOFs-snov

Beacon Object Files (not Buffer Overflows)

License:BSD-2-ClauseStargazers:0Issues:0Issues:0

C2-Tool-Collection

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

Stargazers:0Issues:0Issues:0

EnableWebDAVClient-BOF

Cobalt Strike Beacon Object File to enable the webdav client service on x64 windows hosts

License:GPL-3.0Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

fileSearcher

A simple BOF (Beacon Object File) to search files in the system

Stargazers:0Issues:0Issues:0

Jicop-H00k

contains the core files required to create a Beacon Object File (BOF) for use with AM0N-Eye. BOFs are compiled C programs written in a specific convention that allows them to execute within a Beacon process and use internal Beacon APIs. BOFs provide a fast and efficient way to extend the Beacon

Stargazers:0Issues:0Issues:0

Kerbeus-BOF

BOF for Kerberos abuse (an implementation of some important features of the Rubeus).

Stargazers:0Issues:0Issues:0

LdapSignCheck

Beacon Object File & C# project to check LDAP signing

Language:C#Stargazers:0Issues:0Issues:0

MetaFinder

Search for documents in a domain through Search Engines (Google, Bing and Baidu). The objective is to extract metadata

License:GPL-3.0Stargazers:0Issues:0Issues:0

OperatorsKit

Collection of Beacon Object Files (BOF) for Cobalt Strike

Language:CLicense:MITStargazers:0Issues:0Issues:0

PrivKit

PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.

License:GPL-3.0Stargazers:0Issues:0Issues:0

samdump-bof

Beacon Object File Dump sam file

Stargazers:0Issues:0Issues:0

ScreenshotBOF

An alternative screenshot capability for Cobalt Strike that uses WinAPI and does not perform a fork & run. Screenshot downloaded in memory.

Stargazers:0Issues:0Issues:0

ServiceSetSD-Bof

Beacon Object file set service sd

Language:CStargazers:0Issues:0Issues:0

SharpSCCM

A C# utility for interacting with SCCM

License:GPL-3.0Stargazers:0Issues:0Issues:0

SOAPHound

SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Directory Web Services (ADWS) protocol.

License:GPL-3.0Stargazers:0Issues:0Issues:0

SuperSharpShares

SuperSharpShares is a tool designed to automate enumerating domain shares, allowing for quick verification of accessible shares by your associated domain account.

Stargazers:0Issues:0Issues:0

WdToggle

A Beacon Object File (BOF) for Cobalt Strike which uses direct system calls to enable WDigest credential caching.

Stargazers:0Issues:0Issues:0

whereami

Cobalt Strike Beacon Object File (BOF) that uses handwritten shellcode to return the process Environment strings without touching any DLL's.

Language:CLicense:MITStargazers:0Issues:0Issues:0

xPipe

Cobalt Strike BOF to list Windows Pipes & return their Owners & DACL Permissions

Language:CLicense:MITStargazers:0Issues:0Issues:0