diff --git a/Offensive.md b/Offensive.md index f249e87..852e83e 100644 --- a/Offensive.md +++ b/Offensive.md @@ -524,6 +524,10 @@ Some tools can be categorized in more than one category. But because the current eladshamir/Internal-Monologue Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS + + Flangvik/BetterSafetyKatz + Fork of SafetyKatz that dynamically fetches the latest pre-compiled release of Mimikatz directly from gentilkiwi GitHub repo, runtime patches signatures and uses SharpSploit DInvoke to PE-Load into memory. + FSecureLABS/physmem2profit Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely