SharpDPAPI is a C# port of some DPAPI functionality from @gentilkiwi's Mimikatz project.
credential dump using forshaw technique using SeTrustedCredmanAccessPrivilege
An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents
Tool to bypass LSA Protection (aka Protected Process Light)
Les fonctionnalités principales de redcursorsecurityconsulting/pplkiller sont : Credential Dumping, EDR and Logging Evasion, Offensive Security Tools.
Les alternatives open-source à redcursorsecurityconsulting/pplkiller incluent : jlospinoso/gargoyle. mgeeky/threadstackspoofer — Thread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's… barbarisch/forkatz — credential dump using forshaw technique using SeTrustedCredmanAccessPrivilege. ghostpack/sharpdpapi — SharpDPAPI is a C# port of some DPAPI functionality from @gentilkiwi's Mimikatz project. mgeeky/shellcodefluctuation — An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then… thewover/dinvoke.