Skip to content
View DrorDvash's full-sized avatar

Highlights

  • Pro

Block or report DrorDvash

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

SCADAver: a Rust-powered, multi-protocol OT/ICS security framework for authorized labs featuring asset discovery, enumeration, controlled validation, simulators, and CLI, TUI, and web interfaces. D…

Rust 29 2 Updated Aug 9, 2026

ANIMO Azure Network Intel & Mission Ops a C2 based on Azure/Entra assessments

C++ 88 13 Updated Aug 7, 2026

A centralized resource for previously documented WDAC bypass techniques

665 84 Updated Aug 6, 2026

Reverse Engineering / Authorized Penetration Testing / Security Research Skill Router Pack AI-powered routing + On-demand toolchain bootstrapping + Self-evolving knowledge base Supports Claude Code…

PowerShell 25,129 3,415 Updated Aug 13, 2026

A command line process execution monitor for Windows.

PowerShell 14 Updated Jul 31, 2026

Access All Networks: an offensive multitool against 802.1X

Python 33 5 Updated Aug 25, 2025

Certighost POC

Python 312 77 Updated Jul 28, 2026

Penelope Shell Handler

Python 2,005 230 Updated Aug 5, 2026

SOCKS5 proxy tool that uses Azure Storage services as a means of communication.

Go 362 44 Updated Aug 11, 2026

Open-source, self-hosted AI vulnerability research tool that orchestrates agents to find and validate security issues in code.

JavaScript 1,704 299 Updated Aug 12, 2026

Refusal handling skill for vulnerability research evals

Python 41 3 Updated May 3, 2026

More Than Meets the Eye

1 1 Updated Jul 17, 2026

Research notes on Windows Component Object Model (COM) attack surface for offensive security and vulnerability research. Covers COM hijacking, elevation of privilege, DCOM lateral movement, and per…

Python 155 22 Updated Jul 20, 2026

DCOM in memory and fileless lateral movement techniques through .Net deserilization

C# 282 33 Updated Jun 22, 2026

Cobalt Strike BOF that extracts selected Windows registry hives directly from a raw NTFS volume by parsing NTFS metadata and reading file data straight from disk.

C 93 8 Updated Jun 17, 2026

A modern alternative Web-UI for the Mythic Command and Control Server

TypeScript 81 6 Updated Jul 3, 2026

This repo contains the results of an internal re-write of impacket I undertook at my current company. It contains some of the IoCs found within the library

321 31 Updated May 24, 2026

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with zero human intervention.

Python 2,308 467 Updated Aug 12, 2026

InfraGuard is a Command & Control Redirection Proxy and Manager which protects your Red Team Infrastructure against threat attribution

Python 163 10 Updated Jul 15, 2026

claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a s…

Python 2,914 480 Updated May 8, 2026

Conquest is a feature-rich and malleable command & control/post-exploitation framework developed in Nim.

Nim 418 47 Updated Aug 12, 2026

Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.

C 50 7 Updated Jul 23, 2026

This cheatsheet maps common impacket workflows to their modern alternatives

302 22 Updated May 30, 2026

A complete Go port of Impacket - 63 CLI tools and 24 libraries for Windows & Active Directory protocol attacks, compiled to a single dependency-free binary.

Go 705 59 Updated Jul 21, 2026

Claude Desktop for Linux

TypeScript 5,340 517 Updated Aug 14, 2026

In-memory BOF implementation of Silent Process Exit LSASS dump via RtlReportSilentProcessExit

Python 19 Updated Apr 14, 2026

Tailscale-based Windows VNC persistence tool with Session 0 isolation bypass, embedding a full WireGuard peer and RFB server into a single drop-in binary.

Go 309 38 Updated Apr 11, 2026

abusing windows toast notifications for fun and user manipulation

C 106 11 Updated Jul 11, 2026

A small collection of Crystal Palace PIC loaders designed for use with Cobalt Strike

C 238 32 Updated Apr 11, 2026

Cobalt Strike BOF used to perform privilege escalation by exploiting the SeImpersonate privilege. Based on the original GodPotato PoC by BeichenDream.

C 277 35 Updated Apr 16, 2026
Next