{"repo":"FalconOpsLLC/goexec","free":true,"listed":false,"github":"https://github.com/FalconOpsLLC/goexec","clone":"git clone https://github.com/FalconOpsLLC/goexec.git","description":"Windows remote execution multitool","language":"Go","stars":814,"topics":["go","golang","hacking","remote","remote-access","windows","lateral-movement"],"license":"MIT","category":"dev-tools","readme_excerpt":"GoExec - Remote Execution Multitool GoExec is a new take on some of the methods used to gain remote execution on Windows devices. GoExec implements a number of largely unrealized execution methods and provides significant OPSEC improvements overall. The original post about GoExec v0.1.0 can be found here Installation Build & Install with Go To build this project from source, you will need Go version 1.23. or greater and a 64-bit target architecture. More information on managing Go installations can be found here Manual Installation For pre-release features, fetch the latest commit and build manually. Install with Docker We've provided a Dockerfile to build and run GoExec within Docker containers. Install from Release You may also download the latest release for 64-bit Windows, macOS, or Linux. Usage GoExec is made up of modules for each remote service used (i.e. wmi , scmr , etc.), and specific methods within each module (i.e. wmi proc , scmr change , etc.) Fetching Remote Process Output Although not recommended for live engagements or monitored environments due to OPSEC concerns, we've included the optional ability to fetch program output via SMB file transfer with the -o / --out flag. Use of this flag will wrap the supplied command in cmd.exe /c... \\Windows\\Temp\\RANDOM where RANDOM is a random GUID, then fetch the output file via SMB file transfer. By default, the output collection will time out after 1 minute, but this can be adjusted with the --out-timeout flag. WMI Modul","default_branch":null,"files":null,"tree":[],"storefront":"/r/FalconOpsLLC","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/FalconOpsLLC/goexec/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}