ssh.exe is available in windows 10 / server 2019 by default, let's LOLBAS it up!
-
Updated
Nov 25, 2019
ssh.exe is available in windows 10 / server 2019 by default, let's LOLBAS it up!
A CALDERA plugin
This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM, SECURITY and SAM hives and once copied to the attacker machines provides option to delete these files to clear the trace.
.NET 4.0 Scheduled Job Lateral Movement
.NET 4.0 WinRM API Command Execution
Manipulating and Abusing Windows Access Tokens.
A set of instructions, command and techniques that help during an Active Directory Assessment.
mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse
A short script to automate the process of RDP session hijacking.
conduct lateral movement attack by leveraging unfiltered services display name to smuggle binaries as chunks into the target machine
Invoke-KleptoKitty - Deploys Payloads and collects credentials
Self-developed tools for Lateral Movement/Code Execution
C++ WinRM API via Reflective DLL
This tool is used to find anomalies or suspicious login events, especially to detect lateral movement.
Free copy of The Cyber Plumber's Handbook - The definitive guide to Secure Shell (SSH) tunneling, port redirection, and bending traffic like a boss.
Perform directory listing, read and write file on remote computer via DCOM methods
a unique framework for cybersecurity simulation and red teaming operations, windows auditing for newer vulnerabilities, misconfigurations and privilege escalations attacks, replicate the tactics and techniques of an advanced adversary in a network.
Out Of Band keying of macsec (L2 encryption for LAN) with Nitrokey HSM modules.
Crowdsourced experiment on the use of lateral position for communication between an automated vehicle and a pedestrian.
Add a description, image, and links to the lateral-movement topic page so that developers can more easily learn about it.
To associate your repository with the lateral-movement topic, visit your repo's landing page and select "manage topics."