Skip to content
View Cyb3r-Monk's full-sized avatar

Highlights

  • Pro

Organizations

@AppliedPurpleTeaming

Block or report Cyb3r-Monk

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Adversary Simulation

Adversary simulations
10 repositories

AI-LLM

Promp engineering etc.
27 repositories

Attack Simulation and Automation

Attack simulation, detection engineering, purple teaming. etc.
36 repositories

Blue Team Tools

23 repositories

Data Science

20 repositories

Data Visualization

Interactive dashboarding etc.
4 repositories

DFIR

3 repositories

DFIR and Hunting Tools

Useful tools for threat hunting and DFIR
35 repositories
90 stars written in C#
Clear filter

A wrapper executable that can run any executable as a Windows service, in a permissive license.

C# 13,395 1,654 Updated Apr 25, 2024

C# as you know it but with Go-inspired tooling (small, selfcontained, and native executables)

C# 3,854 112 Updated Oct 27, 2025

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

C# 1,615 211 Updated Aug 6, 2022

TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts

C# 1,350 153 Updated Oct 22, 2025

RunasCs - Csharp and open version of windows builtin runas.exe

C# 1,289 155 Updated Jul 12, 2024

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

C# 1,221 202 Updated Aug 27, 2023

This program is designed to demonstrate various process injection techniques

C# 1,195 189 Updated Aug 7, 2025

The Azure MCP Server, bringing the power of Azure to your agents.

C# 1,178 351 Updated Sep 3, 2025

Writing custom backdoor payloads with C# - Defcon 27 Workshop

C# 1,178 280 Updated Mar 18, 2022

A method of bypassing EDR's active projection DLL's by preventing entry point exection

C# 1,156 163 Updated Mar 31, 2021

Spartacus DLL/COM Hijacking Toolkit

C# 1,065 155 Updated Feb 1, 2024

PowerShell rebuilt in C# for Red Teaming purposes

C# 1,037 144 Updated Nov 6, 2025

PoCs and tools for investigation of Windows process execution techniques

C# 938 145 Updated Nov 4, 2025

Whisker is a C# tool for taking over Active Directory user and computer accounts by manipulating their msDS-KeyCredentialLink attribute, effectively adding "Shadow Credentials" to the target account.

C# 916 113 Updated Nov 11, 2024

OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team exercises.

C# 819 149 Updated Oct 27, 2023

Dump Azure AD Connect credentials for Azure AD and Active Directory

C# 750 95 Updated Aug 26, 2025

Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)

C# 683 96 Updated May 7, 2025

A C# utility for interacting with SCCM

C# 663 99 Updated Aug 20, 2025

GHOSTS is a realistic user simulation framework for cyber experimentation, simulation, training, and exercise

C# 623 79 Updated Nov 8, 2025

Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework

C# 620 97 Updated May 8, 2025

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

C# 579 62 Updated Mar 19, 2024

Windows protocol library, including SMB and RPC implementations, among others.

C# 562 63 Updated Nov 3, 2025

DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the default settings).

C# 558 81 Updated Jun 5, 2023

Detect and respond to Cobalt Strike beacons using ETW.

C# 509 49 Updated Jul 15, 2022

A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other objects in the domain.

C# 473 81 Updated Oct 14, 2022

BadAssMacros - C# based automated Malicous Macro Generator.

C# 428 85 Updated Jan 8, 2022

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

C# 403 38 Updated Jan 10, 2025

Bypass for PowerShell Constrained Language Mode

C# 402 51 Updated Dec 23, 2021

Escalate Service Account To LocalSystem via Kerberos

C# 399 78 Updated Sep 14, 2023
Next