Skip to content
View ricardojoserf's full-sized avatar
:shipit:
Ship it!
:shipit:
Ship it!

Block or report ricardojoserf

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Pinned Loading

  1. NativeDump NativeDump Public

    Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)

    C# 739 104

  2. TrickDump TrickDump Public

    Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!

    C# 557 57

  3. SAMDump SAMDump Public

    Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#, C++, Crystal and Python

    C# 357 46

  4. NativeBypassCredGuard NativeBypassCredGuard Public

    Bypass Credential Guard by patching WDigest.dll using only NTAPI functions

    C++ 270 34

  5. AutoPtT AutoPtT Public

    Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. Implemented in C#, C++, Crystal, Python and Rust

    C# 134 14

  6. covert-control covert-control Public

    Google Drive, OneDrive and Youtube as covert-channels - Control systems remotely by uploading files to Google Drive, OneDrive, Youtube or Telegram

    Python 71 8