Skip to content
Change the repository type filter

All

    Repositories list

    • Execute dotnet app from unmanaged process
      C++
      9000Updated Dec 29, 2024Dec 29, 2024
    • LitterBox

      Public
      sandbox approach for malware developers and red teamers to test payloads against detection mechanisms before deployment
      YARA
      23000Updated Dec 29, 2024Dec 29, 2024
    • Slides for COM Hijacking AV/EDR Talk on 38c3
      6000Updated Dec 28, 2024Dec 28, 2024
    • ADcheck

      Public
      Assess the security of your Active Directory with few or all privileges.
      Python
      GNU General Public License v3.0
      27000Updated Dec 27, 2024Dec 27, 2024
    • tun2proxy

      Public
      Tunnel (TUN) interface for SOCKS and HTTP proxies
      Rust
      MIT License
      101100Updated Dec 27, 2024Dec 27, 2024
    • 三色哥斯拉(Godzilla)
      9000Updated Dec 26, 2024Dec 26, 2024
    • clematis

      Public
      PE to shellcode
      Python
      22000Updated Dec 26, 2024Dec 26, 2024
    • Tool to extract username and password of current user from PanGPA in plaintext
      C++
      14000Updated Dec 23, 2024Dec 23, 2024
    • A sleek and intuitive GUI built with Tkinter for managing the Evil-BW16 device, designed for ethical WiFi network testing and penetration testing.
      Python
      MIT License
      3000Updated Dec 21, 2024Dec 21, 2024
    • Krueger

      Public
      Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC
      C#
      GNU General Public License v3.0
      26000Updated Dec 20, 2024Dec 20, 2024
    • Validates priv escalation of AD trusts
      Python
      6000Updated Dec 20, 2024Dec 20, 2024
    • sccmhound

      Public
      A BloodHound collector for Microsoft Configuration Manager
      C#
      GNU General Public License v3.0
      14000Updated Dec 19, 2024Dec 19, 2024
    • Automated Hosting Information Hunting Tool - Windows 主机信息自动化狩猎工具
      C#
      27000Updated Dec 19, 2024Dec 19, 2024
    • aad-bofs

      Public
      AzureAD beacon object files
      C
      8000Updated Dec 18, 2024Dec 18, 2024
    • A Reflective Loader for macOS
      C++
      19000Updated Dec 17, 2024Dec 17, 2024
    • Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide
      HTML
      3000Updated Dec 16, 2024Dec 16, 2024
    • A Rust implementation of Internal-Monologue — retrieving NetNTLM hashes without touching LSASS, leveraging SSPI for NTLM negotiation and indirect NTAPIs for core operations.
      Rust
      MIT License
      18000Updated Dec 15, 2024Dec 15, 2024
    • FuzzyAI

      Public
      A powerful tool for automated LLM fuzzing. It is designed to help developers and security researchers identify and mitigate potential security vulnerabilities in their LLM APIs.
      Python
      Apache License 2.0
      11000Updated Dec 15, 2024Dec 15, 2024
    • hrtng

      Public
      IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformations
      C++
      GNU General Public License v3.0
      65000Updated Dec 14, 2024Dec 14, 2024
    • C++
      17000Updated Dec 13, 2024Dec 13, 2024
    • Shrike

      Public
      Hunting and injecting RWX 'mockingjay' DLLs in pure nim
      Nim
      3000Updated Dec 11, 2024Dec 11, 2024
    • DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely
      C++
      39000Updated Dec 10, 2024Dec 10, 2024
    • ldapx

      Public
      Flexible LDAP proxy that can be used to inspect & transform all LDAP packets generated by other tools on the fly.
      Go
      MIT License
      3100Updated Dec 9, 2024Dec 9, 2024
    • Beacon Object File (BOF) launcher - library for executing BOF files in C/C++/Zig applications
      Zig
      BSD 3-Clause "New" or "Revised" License
      16000Updated Dec 9, 2024Dec 9, 2024
    • QoL-BOFs

      Public
      Curated list of public Beacon Object Files(BOFs) build in as submodules for easy cloning
      C
      13000Updated Dec 6, 2024Dec 6, 2024
    • PowerDACL

      Public
      A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)
      PowerShell
      7000Updated Dec 5, 2024Dec 5, 2024
    • C
      58000Updated Dec 5, 2024Dec 5, 2024
    • x-waf

      Public
      WAF自动化绕过工具
      11000Updated Dec 4, 2024Dec 4, 2024
    • fscan的魔改和一些免杀,优化了存活扫描和端口扫描的输出,更加直观舒适的使用。
      Go
      2000Updated Dec 4, 2024Dec 4, 2024
    • Recon scripts for Red Team and Web blackbox auditing
      Python
      Apache License 2.0
      2000Updated Dec 3, 2024Dec 3, 2024