WdToggle

Credential cache

A tool to enable WDigest credential caching using direct system calls in Cobalt Strike

A Beacon Object File (BOF) for Cobalt Strike which uses direct system calls to enable WDigest credential caching.

GitHub

213 stars
15 watching
31 forks
last commit: over 1 year ago

Related projects:

Repository Description Stars
outflanknl/inlinewhispers Tool to generate inline assembly code for direct system calls in COBalt Strike's Beacon Object Files (BOF) 308
hagrid29/bof-credui A C-based tool for invoking Windows credential prompt using the CredUIPromptForWindowsCredentials API 18
outflanknl/helpcolor Lists available Cobalt Strike beacon commands and colors them based on their type 189
outflanknl/c2-tool-collection Tools for exploiting vulnerabilities in Windows systems and gathering information about networked computers. 1,143
riccardoancarani/bofs Utilities for Cobalt Strike's Beacon Object Files to simplify working with shellcode and system processes 111
espressocake/beacondownloadsync Tools to synchronize files from Cobalt Strike Downloads entries in the data model. 91
outflanknl/findobjects-bof An exploit tool that uses direct system calls to enumerate processes based on specific loaded modules or process handles 266
boku7/halosgate-ps A Cobalt Strike Beacon Object File (BOF) that uses custom syscaller code to make direct system calls to retrieve process information on the target system. 94
outflanknl/spray-ad Automates an Active Directory password spraying attack to identify weak or guessable passwords 425
pwn1sher/cs-bofs A collection of compiled beacon object files from the CobaltStrike platform. 99
wkl-sec/malleable-cs-profiles A collection of tools to generate and modify shellcode profiles to evade detection in Cobalt Strike 374
dfed/cacheadvance A high-performance cache for logging systems 38
nccgroup/scomdecrypt Tool for decrypting RunAs credentials stored in SCOM servers 119
cobalt-strike/bof-vs A Beacon Object File Visual Studio template project for creating malicious code executables 138
ztgrace/changeme A tool designed to detect default and backdoor credentials by scanning various protocols 1,450