Toggle_Token_Privileges_BOF
by EspressoCake
Syscall BOF to arbitrarily add/detract process token privilege rights.
AI summary
Privilege toggler
A tool to add or remove specific privilege rights from the token of the current process
- stars
- 52
- forks
- 19
- watching
- 4
Similar projects
Found by comparing what the projects do, not just their names.
Process protection checker
A tool that helps operators determine the protection level of a process before attempting to access its memory
Exclusion tool
Tools to determine Windows Defender exclusions
Privilege escalator
Tool to bypass Windows security restrictions and gain elevated privileges
Privilege escalation tool
A tool that allows an attacker to elevate privileges and gain control over the Windows Defender service
Firewall Exploit
An exploit technique allowing interaction with Windows software firewall via COM interfaces.
Process killer
BOF implementation of a research concept allowing for controlled deletion of processes
ccob/sweetpotato1.6K
Privilege escalator
Provides tools and techniques for exploiting Windows privilege escalation vulnerabilities from service accounts to SYSTEM.
DLL Search Enumerator
A tool to enumerate the search order of DLL resolution and potentially gain information about a file's mutability.
Process dumper
A tool for dumping the memory contents of a protected process on Windows
Privilege escalator
A simple and secure alternative to sudo and doas for running commands with elevated privileges.
Feature toggler
A library for controlling feature usage in Elixir applications by evaluating user groups and rules
Privilege Escalation Tool
A PowerShell module for demonstrating third-party privilege escalation attacks with Cobalt Strike's Beacon payload
Feature toggle library
A library that manages feature toggles in Elixir applications using Redis or SQL as backing services.
String finder
A tool for searching for specific strings within files using a needle-sift algorithm
Windows privilege escalation exploit
An exploit tool for a Windows vulnerability allowing an attacker to run arbitrary code as SYSTEM on Windows 10 and Windows 11