An Insider Threat Toolkit
Clone or download
dmc
Latest commit da27528 Dec 17, 2018
Permalink
Type Name Latest commit message Commit time
Failed to load latest commit information.
Properties first commit Dec 17, 2018
Archiver.cs first commit Dec 17, 2018
DllExport.bat first commit Dec 17, 2018
DllExport_Configure.bat first commit Dec 17, 2018
DotNetLoader.cs first commit Dec 17, 2018
FodyWeavers.xml first commit Dec 17, 2018
README.md Fixed ascii Dec 17, 2018
SharpPack.cs first commit Dec 17, 2018
SharpPack.csproj first commit Dec 17, 2018
SharpPack.sln first commit Dec 17, 2018
packages.config first commit Dec 17, 2018

README.md

SharpPack

  _______ __                     _______            __    
 |   _   |  |--.---.-.----.-----|   _   .---.-.----|  |--.
 |   1___|     |  _  |   _|  _  |.  1   |  _  |  __|    < 
 |____   |__|__|___._|__| |   __|.  ____|___._|____|__|__|
 |:  1   |                |__|  |:  |                     
 |::.. . |                      |::.|                     
 `-------'                      `---'                     

Description

SharpPack is a toolkit for insider threat assessments that lets you defeat application whitelisting to execute arbitrary DotNet and PowerShell tools.

Full details can be found in the MDSec blog post

Author and Credits

Author: Dominic Chell, MDSec ActiveBreach @domchell and @mdseclabs