naksyn / Pyramid

a tool to help operate in EDRs' blind spots
Apache License 2.0
638 stars 71 forks source link

Add base-DonPAPI.py example #1

Closed snovvcrash closed 2 years ago

snovvcrash commented 2 years ago

Hey @naksyn, thanks for your awesome research!

I'd like to add DonPAPI example to Pyramid with this PR. It should be considered as an example only due to writing all the results on disk, so not too much opsec here 😅 But anyways, it still can be used to bypass AV/EDRs during a pentest engagement.

naksyn commented 2 years ago

Hi @snovvcrash thanks for your greatly appreciated contribution and for your kind words! Tested on windows 11 x64 and working great. No problem for writing to disk, also BloodHound base does the same, it is fairly quick to increase OPSEC according to ones need. I'll add the DonPAPI base in the readme tagging you. Thanks again!