Toggle_Token_Privileges_BOF

Privilege toggler

A tool to add or remove specific privilege rights from the token of the current process

Syscall BOF to arbitrarily add/detract process token privilege rights.

GitHub

52 stars
4 watching
19 forks
Language: C
last commit: about 2 years ago

Related projects:

RepositoryDescriptionStars
espressocake/process_protection_level_bofA tool that helps operators determine the protection level of a process before attempting to access its memory51
espressocake/defender_exclusions-bofTools to determine Windows Defender exclusions241
mr-un1k0d3r/elevate-system-trusted-bofTool to bypass Windows security restrictions and gain elevated privileges148
octoberfest7/killdefender_bofA tool that allows an attacker to elevate privileges and gain control over the Windows Defender service62
espressocake/firewall_walker_bofAn exploit technique allowing interaction with Windows software firewall via COM interfaces.100
espressocake/self_deletion_bofBOF implementation of a research concept allowing for controlled deletion of processes171
ccob/sweetpotatoProvides tools and techniques for exploiting Windows privilege escalation vulnerabilities from service accounts to SYSTEM.1,638
espressocake/dll-hijack-search-order-bofA tool to enumerate the search order of DLL resolution and potentially gain information about a file's mutability.141
espressocake/ppldump_bofA tool for dumping the memory contents of a protected process on Windows136
atalii/adageA simple and secure alternative to sudo and doas for running commands with elevated privileges.6
sorentwo/flippantA library for controlling feature usage in Elixir applications by evaluating user groups and rules107
rsmudge/elevatekitA PowerShell module for demonstrating third-party privilege escalation attacks with Cobalt Strike's Beacon payload894
securingsincity/molassesA library that manages feature toggles in Elixir applications using Redis or SQL as backing services.77
espressocake/needle_sift_bofA tool for searching for specific strings within files using a needle-sift algorithm30
octoberfest7/cve-2023-36874_bofAn exploit tool for a Windows vulnerability allowing an attacker to run arbitrary code as SYSTEM on Windows 10 and Windows 11202