Instantly share code, notes, and snippets.
I hack code together and hope it works.
- https://futuresec.io
- Gamma Quadrant 4
- https://medium.com/@rvrsh3ll
- @424f424f
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.Learn more about bidirectional Unicode characters
| [DllImport("user32.dll",SetLastError=true)] | |
| staticexternuintSendInput(uintnInputs,[MarshalAs(UnmanagedType.LPArray),In]INPUT[]pInputs,intcbSize); | |
| [StructLayout(LayoutKind.Sequential)] | |
| structINPUT | |
| { | |
| publicuinttype; | |
| publicMOUSEINPUTmi; | |
| } |
rvrsh3ll /WorldWritableDirs.txt
CreatedMay 8, 2024 15:33 — forked frommattifestation/WorldWritableDirs.txt
World-writable directories in %windir% This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.Learn more about bidirectional Unicode characters
| c:\windows\system32\microsoft\crypto\rsa\machinekeys | |
| c:\windows\system32\tasks_migrated\microsoft\windows\pla\system | |
| c:\windows\syswow64\tasks\microsoft\windows\pla\system | |
| c:\windows\debug\wia | |
| c:\windows\system32\tasks | |
| c:\windows\syswow64\tasks | |
| c:\windows\tasks | |
| c:\windows\registration\crmlog | |
| c:\windows\system32\com\dmp | |
| c:\windows\system32\fxstmp |
rvrsh3ll /Numbers.Xml
CreatedFebruary 9, 2024 19:55 — forked fromsecdev02/Numbers.Xml
XSLT C# Examples This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.Learn more about bidirectional Unicode characters
| <?xml version='1.0'?> | |
| <data> | |
| <circle> | |
| <radius>12</radius> | |
| </circle> | |
| <circle> | |
| <radius>37.5</radius> | |
| </circle> | |
| </data> |
rvrsh3ll /azure_client_ids.txt
CreatedOctober 4, 2023 20:53 — forked fromdafthack/azure_client_ids.txt
A collection of client IDs that can be used to authenticate a user, and their associated application name that shows up in Azure Sign-In logs. This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.Learn more about bidirectional Unicode characters
| 00b41c95-dab0-4487-9791-b9d2c32c80f2 - Office 365 Management | |
| 04b07795-8ddb-461a-bbee-02f9e1bf7b46 - Microsoft Azure CLI | |
| 0ec893e0-5785-4de6-99da-4ed124e5296c - Office UWP PWA | |
| 18fbca16-2224-45f6-85b0-f7bf2b39b3f3 - Microsoft Docs | |
| 1950a258-227b-4e31-a9cf-717495945fc2 - Microsoft Azure PowerShell | |
| 1b3c667f-cde3-4090-b60b-3d2abd0117f0 - Windows Spotlight | |
| 1b730954-1685-4b74-9bfd-dac224a7b894 - Azure Active Directory PowerShell | |
| 1fec8e78-bce4-4aaf-ab1b-5451cc387264 - Microsoft Teams | |
| 22098786-6e16-43cc-a27d-191a01a1e3b5 - Microsoft To-Do client | |
| 268761a2-03f3-40df-8a8b-c3db24145b6b - Universal Store Native Client |
rvrsh3ll /gist:78739132045f7a58a6428830f44cdec4
CreatedMay 26, 2023 00:36 — forked fromgwalkey/gist:b168d532b472333e96663cf607bf84eb
Create a NuGet Package to Install a Powershell Module This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.Learn more about bidirectional Unicode characters
| Download the CLI Version of NuGet | |
| https://dist.nuget.org/win-x86-commandline/latest/nuget.exe | |
| --Create Work Paths | |
| md c:\nuget | |
| md c:\nuget\source | |
| md c:\nuget\publish | |
| -- One-Time - Create local NuGet Repo/feed using a local drive path | |
| cd c:\nuget |
rvrsh3ll /HInvoke.cs
CreatedMay 24, 2023 12:22 — forked fromdr4k0nia/HInvoke.cs
A very minimalistic approach of calling .net runtime functions or accessing properties using only hashes as identifiers. It does not leave any strings or import references since we dynamically resolve the required member from the mscorlib assembly on runtime. Read the blog post:https://dr4k0nia.github.io/dotnet/coding/2022/08/10/HInvoke-and-avo… This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.Learn more about bidirectional Unicode characters
| usingSystem.Linq; | |
| usingSystem.Reflection; | |
| namespaceHashInvoke; | |
| publicclassHInvoke | |
| { | |
| publicstaticTInvokeMethod<T>(uintclassID,uintmethodID,object[]?args=null) | |
| { | |
| // Get the System assembly and go trough all its types hash their name |
rvrsh3ll /urbandoor.cs
CreatedApril 11, 2023 00:16 — forked frommonoxgas/urbandoor.cs
Minimal PoC code for Kerberos Unlock LPE (CVE-2023-21817) This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.Learn more about bidirectional Unicode characters
| usingNtApiDotNet; | |
| usingNtApiDotNet.Ndr.Marshal; | |
| usingNtApiDotNet.Win32; | |
| usingNtApiDotNet.Win32.Rpc.Transport; | |
| usingNtApiDotNet.Win32.Security.Authentication; | |
| usingNtApiDotNet.Win32.Security.Authentication.Kerberos; | |
| usingNtApiDotNet.Win32.Security.Authentication.Kerberos.Client; | |
| usingNtApiDotNet.Win32.Security.Authentication.Kerberos.Server; | |
| usingNtApiDotNet.Win32.Security.Authentication.Logon; | |
| usingSystem; |
rvrsh3ll /EtwStartWebClient.cs
CreatedJanuary 13, 2023 15:18 — forked fromklezVirus/EtwStartWebClient.cs
A PoC in C# to enable WebClient Programmatically This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.Learn more about bidirectional Unicode characters
| usingSystem.Runtime.InteropServices; | |
| usingSystem; | |
| /* | |
| *Simple C# PoC to enable WebClient Service Programmatically | |
| * Based on the C++ versionfrom @tirannido(James Forshaw) | |
| * Twitter: https://twitter.com/tiraniddo | |
| * URL: https://www.tiraniddo.dev/2015/03/starting-webclient-service.html | |
| * | |
| *Compilewith: |
NewerOlder