用于记录内网渗透(域渗透)学习 :-)
仓库
INotGreen 的仓库
本项目集成了全网优秀的攻防工具项目,包含自动化利用,子域名、敏感目录、端口等扫描,各大中间件,cms漏洞利用工具以及应急响应等资料。
Snippets stolen from github.com/Arvanaghi/CheckPlease
学习免杀的笔记
cobaltstrike的相关资源汇总 / List of Awesome CobaltStrike Resources
这是一个基于gh0st远程控制的项目,使自己更深入了解远控的原理,采用VS2017,默认分支hijack还在修改不能执行,master分支的项目可以正常的运行的,你可以切换到该分支查看可以执行的代码
Check VM/SandBox
Fully functional, from-scratch alternative to the Cobalt Strike Beacon (red teaming tool), offering transparency and flexibility for security professionals and enthusiasts.
A C++ proof of concept demonstrating the exploitation of Windows Protected Process Light (PPL) by leveraging COM-to-.NET redirection and reflection techniques for code injection. This PoC showcases bypassing code integrity checks and loading malicious payloads in highly protected processes such as LSASS. Based on research from James Forshaw.
PoC for a new sleep obfuscation technique leveraging waitable timers to evade memory scanners.
pe reflection tool, which confuses invoke and entry
域控安全one for all
Modified Version of Melkor @FuzzySecurity capable of creating disposable AppDomains in injected processes.
Erfrp-frp二开-免杀与隐藏
.NET Assembly Dumper
绕过AV/EDR的代码例子(Code example to bypass AV/EDR)
A c# Command & Control framework