LOLAPPS
Star

Living Off The Land Applications: Sowing the seeds for application exploitation ease.

Click on the logo to visit the Github repo.

This project was made because exploitation isn't limited to binaries using command line techniques. Both built-in and third-party applications have been used & abused for adversarial gain since the dawn of time, and knowing these methods can help when all else fail.

For contributions, use the contribution guide.

MITRE ATT&CK® and ATT&CK® are registered trademarks of The MITRE Corporation. You can see the current ATT&CK® mapping of this project on the ATT&CK® Navigator.

If you are looking for UNIX binaries, please visit gtfobins.github.io.
For Windows binaries, please visit lolbas-project.github.io.

Application Functions Type ATT&CK® Techniques
Greenshot Desktop
  • T1546
KeePass Desktop
  • T1546
Notepad++ Desktop
  • T1546
Remote Desktop Connection Desktop
  • T1021.001
ShareX Desktop
  • T1546
VS Code Desktop
  • T1546
Microsoft Visual Studio Tools for Office (VSTO) Desktop
  • T1204.002
  • T1137.006
Windows Terminal Desktop
  • T1546
WinSCP Desktop
  • T1546
Windows Subsystem for Linux (WSL) Desktop
  • T1547.001
Discord Web
  • T1102
  • T1041
  • T1574.002
Dropbox Web
  • T1567.002
  • T1102
Zix Secure Messaging Web
  • T1567
  • T1105
  • T1566.003
No results.