Skip to content
View mooolight's full-sized avatar

Block or report mooolight

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows | Provides tools and Guides for Pers…

C# 4,326 310 Updated Jun 18, 2026

A modern platform for visual, flexible, and extensible graph-based investigations. For cybersecurity analysts and investigators.

TypeScript 6,820 827 Updated Jun 18, 2026

Custom EDR for testing some malware evasion techniques.

C++ 1 Updated Jun 15, 2026

Bicep is a declarative language for describing and deploying Azure resources

Bicep 3,606 818 Updated Jun 18, 2026

Threat Model Knowledge Base - Security context source for AI-assisted development

Go 5 Updated Jun 11, 2026

This project aims to compare and evaluate the telemetry of various EDR products.

Python 1,969 197 Updated Jun 18, 2026

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.

C# 1,121 177 Updated Jul 26, 2021

Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers

Python 442 34 Updated Jun 17, 2026

Moonwalk++: Simple POC Combining StackMoonwalking and Memory Encryption

C++ 228 21 Updated Dec 17, 2025

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

PowerShell 2,531 495 Updated Nov 15, 2023

game of active directory

PowerShell 7,941 1,093 Updated Mar 12, 2026

Windows protocol library, including SMB and RPC implementations, among others.

C# 792 82 Updated Jun 11, 2026

A collection of Azure AD/Entra tools for offensive and defensive security purposes

Python 2,639 379 Updated May 21, 2026

Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps release pipelines.

2,917 389 Updated Jun 12, 2026

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

C++ 1,117 163 Updated Jun 17, 2022

PoC Implementation of a fully dynamic call stack spoofer

C++ 965 111 Updated Jul 20, 2024

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

C++ 3,693 474 Updated Jun 6, 2026

Portable Executable reversing tool with a friendly GUI

C++ 3,673 237 Updated Jun 10, 2026

🪅 Windows & Linux userspace emulator

C++ 3,082 192 Updated Jun 19, 2026

Gather and update all available and newest CVEs with their PoC.

HTML 7,885 972 Updated Jun 18, 2026

A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive analysis end to end.

YARA 1,465 166 Updated May 5, 2026

Tools & Interesting Things for RedTeam Ops

Python 2,288 397 Updated Feb 10, 2026

RedInfraCraft automates the deployment of powerful red team infrastructures! It streamlines the setup of C2s, makes it easy to create advanced phishing & payload infras

HCL 233 42 Updated Mar 28, 2025

Multilayered AV/EDR Evasion Framework (no longer actively maintained)

C++ 968 157 Updated Mar 28, 2026

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

6,652 1,325 Updated May 27, 2026

An EDR bypass that prevents EDRs from hooking or loading DLLs into our process by hijacking the AppVerifier layer

C++ 552 81 Updated Feb 13, 2024

Windows Local Privilege Escalation Cookbook

PowerShell 1,343 206 Updated Feb 5, 2026

Educational proof-of-concept demonstrating DEP/NX bypass using hardware breakpoints, vectored exception handling, and instruction emulation on Windows x64. For security research and learning purpos…

C 98 12 Updated Oct 17, 2025
Next