{"repo":"AdrianVollmer/PowerHub","free":true,"listed":false,"github":"https://github.com/AdrianVollmer/PowerHub","clone":"git clone https://github.com/AdrianVollmer/PowerHub.git","description":"A post exploitation tool based on a web application, focusing on bypassing endpoint protection and application whitelisting","language":"PowerShell","stars":832,"topics":["python","pentest","powershell","post-exploitation","remote-admin-tool"],"license":"MIT","category":"security-tools","readme_excerpt":"PowerHub ======== PowerHub is a convenient post exploitation tool for PowerShell which aids a pentester in transferring data, in particular code which may get flagged by endpoint protection. Features: Fileless Stateless Cert pinning String \"obfuscation\" by RC4 encryption Choose your AMSI Bypass Transparent aliases for in-memory execution of C# programs During an engagement where you have a test client available, one of the first things you want to do is run SharpHound, Seatbelt, PowerUp, Invoke-PrivescCheck or PowerSploit. So you need to download the files, mess with endpoint protection, disable the execution policy, etc. PowerHub provides an (almost) one-click-solution for this. Oh, and you can also run arbitrary binaries (PE and shell code) entirely in-memory using PowerSploit's modules, which is sometimes useful to bypass application whitelisting. Your loot (Kerberos tickets, passwords, etc.) can be easily transferred back either as a file or a text snippet, via the command line or the web interface. PowerHub also helps with collaboration in case you're a small team. Here is a simple example (grab information about local groups with PowerView and transfer it back): Documentation ============= Read the docs here. Installation: Usage: Contributing: Changelog: Credits ======= PowerHub is partially based on the awesome work of zc00l, @am0nsec, mar10, p3nt4. And of course, it would be nothing without @harmj0y, @mattifestation and the many other contributors to PowerSploit. Than","default_branch":null,"files":null,"tree":[],"storefront":"/r/AdrianVollmer","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/AdrianVollmer/PowerHub/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}