Skip to content
View lineeralgebra's full-sized avatar
:octocat:
:octocat:
  • donulmez aksamin ufku xD

Block or report lineeralgebra

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

72 stars written in C
Clear filter

windows-kernel-exploits Windows平台提权漏洞集合

C 8,492 2,857 Updated Jun 11, 2021

Defeating Windows User Account Control

C 7,105 1,398 Updated Jul 8, 2025

PoC tool to coerce Windows hosts to authenticate to other machines via MS-EFSRPC EfsRpcOpenFileRaw or other functions.

C 2,108 295 Updated Aug 15, 2024

The swiss army knife of LSASS dumping

C 2,021 256 Updated Sep 17, 2024

Open-Source Shellcode & PE Packer

C 2,016 334 Updated Feb 3, 2024

Credentials Dumper for Linux using eBPF

C 1,150 64 Updated Sep 9, 2024

Fully decrypt App-Bound Encrypted (ABE) cookies, passwords & payment methods from Chromium-based browsers (Chrome, Brave, Edge) - all in user mode, no admin rights required.

C 1,127 192 Updated Nov 2, 2025

A .NET Runtime for Cobalt Strike's Beacon Object Files

C 753 109 Updated Sep 4, 2024

InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assembly execution as an alternative to Cobalt Strikes traditiona…

C 710 137 Updated Jul 22, 2023

Various Cobalt Strike BOFs

C 703 62 Updated Oct 16, 2022

Collection of UAC Bypass Techniques Weaponized as BOFs

C 574 71 Updated Feb 21, 2024

A library for loading dll module bypassing windows PE loader from memory (x86/x64)

C 569 171 Updated Jun 9, 2025

Collection of remote authentication triggers in C#

C 514 61 Updated May 15, 2024

BOF for Kerberos abuse (an implementation of some important features of the Rubeus).

C 504 58 Updated Mar 29, 2025

PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.

C 433 49 Updated Jun 15, 2024

Proof-of-Concept tool for extracting NTLMv1 hashes from sessions on modern Windows systems.

C 400 32 Updated Oct 27, 2025

Recovering NTLM hashes from Credential Guard

C 350 22 Updated Dec 26, 2022

Print Spooler Named Pipe Impersonation for Cobalt Strike

C 270 39 Updated Jun 13, 2020

Obex – Blocking unwanted DLLs in user mode

C 259 34 Updated Sep 18, 2025

Proof of concept Beacon Object File (BOF) that uses static x64 syscalls to perform a complete in memory dump of a process and send that back through your already existing Beacon communication channel

C 247 27 Updated Jul 14, 2021

Beacon Object Files for roasting Active Directory

C 232 40 Updated Feb 21, 2022

Reflective shellcode loaderwith advanced call stack spoofing and .NET support.

C 219 43 Updated Sep 19, 2025

Library of BOFs to interact with SQL servers

C 208 29 Updated Oct 17, 2025

Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.

C 204 28 Updated Oct 9, 2022

Take a screenshot without injection for Cobalt Strike

C 201 12 Updated Jun 7, 2023

The different ways to dump lsass

C 195 24 Updated Aug 15, 2025

Collection of beacon object files for use with Cobalt Strike to facilitate 🐚.

C 181 26 Updated Feb 11, 2021
Next