Skip to content
View Cyb3r-Monk's full-sized avatar

Highlights

  • Pro

Organizations

@AppliedPurpleTeaming

Block or report Cyb3r-Monk

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Adversary Simulation

Adversary simulations
10 repositories

AI-LLM

Promp engineering etc.
27 repositories

Attack Simulation and Automation

Attack simulation, detection engineering, purple teaming. etc.
36 repositories

Blue Team Tools

23 repositories

Data Science

20 repositories

Data Visualization

Interactive dashboarding etc.
4 repositories

DFIR

3 repositories

DFIR and Hunting Tools

Useful tools for threat hunting and DFIR
35 repositories
90 stars written in C#
Clear filter

A wrapper executable that can run any executable as a Windows service, in a permissive license.

C# 13,387 1,654 Updated Apr 25, 2024

C# as you know it but with Go-inspired tooling (small, selfcontained, and native executables)

C# 3,853 112 Updated Oct 27, 2025

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

C# 1,614 211 Updated Aug 6, 2022

TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts

C# 1,347 153 Updated Oct 22, 2025

RunasCs - Csharp and open version of windows builtin runas.exe

C# 1,287 155 Updated Jul 12, 2024

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

C# 1,217 202 Updated Aug 27, 2023

This program is designed to demonstrate various process injection techniques

C# 1,195 189 Updated Aug 7, 2025

Writing custom backdoor payloads with C# - Defcon 27 Workshop

C# 1,178 280 Updated Mar 18, 2022

The Azure MCP Server, bringing the power of Azure to your agents.

C# 1,173 350 Updated Sep 3, 2025

A method of bypassing EDR's active projection DLL's by preventing entry point exection

C# 1,155 163 Updated Mar 31, 2021

Spartacus DLL/COM Hijacking Toolkit

C# 1,065 154 Updated Feb 1, 2024

PowerShell rebuilt in C# for Red Teaming purposes

C# 1,019 141 Updated Nov 5, 2025

PoCs and tools for investigation of Windows process execution techniques

C# 935 145 Updated Nov 4, 2025

Whisker is a C# tool for taking over Active Directory user and computer accounts by manipulating their msDS-KeyCredentialLink attribute, effectively adding "Shadow Credentials" to the target account.

C# 915 112 Updated Nov 11, 2024

OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team exercises.

C# 819 149 Updated Oct 27, 2023

Dump Azure AD Connect credentials for Azure AD and Active Directory

C# 750 95 Updated Aug 26, 2025

Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)

C# 683 96 Updated May 7, 2025

A C# utility for interacting with SCCM

C# 661 98 Updated Aug 20, 2025

GHOSTS is a realistic user simulation framework for cyber experimentation, simulation, training, and exercise

C# 623 78 Updated Nov 5, 2025

Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework

C# 620 97 Updated May 8, 2025

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

C# 579 62 Updated Mar 19, 2024

Windows protocol library, including SMB and RPC implementations, among others.

C# 560 61 Updated Nov 3, 2025

DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the default settings).

C# 557 81 Updated Jun 5, 2023

Detect and respond to Cobalt Strike beacons using ETW.

C# 509 49 Updated Jul 15, 2022

A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other objects in the domain.

C# 473 81 Updated Oct 14, 2022

BadAssMacros - C# based automated Malicous Macro Generator.

C# 428 85 Updated Jan 8, 2022

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

C# 403 38 Updated Jan 10, 2025

Bypass for PowerShell Constrained Language Mode

C# 402 51 Updated Dec 23, 2021

Escalate Service Account To LocalSystem via Kerberos

C# 399 78 Updated Sep 14, 2023
Next