WdToggle
by outflanknl
A Beacon Object File (BOF) for Cobalt Strike which uses direct system calls to enable WDigest credential caching.
AI summary
Credential cache
A tool to enable WDigest credential caching using direct system calls in Cobalt Strike
- stars
- 213
- forks
- 31
- watching
- 15
Similar projects
Found by comparing what the projects do, not just their names.
System call generator
Tool to generate inline assembly code for direct system calls in COBalt Strike's Beacon Object Files (BOF)
Credential Prompt Tool
A C-based tool for invoking Windows credential prompt using the CredUIPromptForWindowsCredentials API
Command cataloger
Lists available Cobalt Strike beacon commands and colors them based on their type
Windows exploit tools
Tools for exploiting vulnerabilities in Windows systems and gathering information about networked computers.
Beacon utilities
Utilities for Cobalt Strike's Beacon Object Files to simplify working with shellcode and system processes
Sync tool
Tools to synchronize files from Cobalt Strike Downloads entries in the data model.
Process enumerator
An exploit tool that uses direct system calls to enumerate processes based on specific loaded modules or process handles
System info BOF
A Cobalt Strike Beacon Object File (BOF) that uses custom syscaller code to make direct system calls to retrieve process information on the target system.
Password sprayer
Automates an Active Directory password spraying attack to identify weak or guessable passwords
Beacon libraries
A collection of compiled beacon object files from the CobaltStrike platform.
Cobalt evasion toolkit
A collection of tools to generate and modify shellcode profiles to evade detection in Cobalt Strike
Cache library
A high-performance cache for logging systems
Credential decrypter
Tool for decrypting RunAs credentials stored in SCOM servers
BOF executable generator
A Beacon Object File Visual Studio template project for creating malicious code executables
ztgrace/changeme1.5K
Credential scanner
A tool designed to detect default and backdoor credentials by scanning various protocols