Stars
BOF exploiting the Visual Studio Installer Elevation Service for SYSTEM LPE and persistence via AppDomainManager hijacking, with native ETW evasion. For Cobalt Strike & Adaptix.
Adversarial Robustness Toolbox (ART) - Python Library for Machine Learning Security - Evasion, Poisoning, Extraction, Inference - Red and Blue Teams
WRAITH — a modern browser-hooking framework (BeEF + blind-XSS successor) for red teams, researchers, and educators. For authorized security testing, research & education only.
Custom Adaptix-compatible C2 agent - PIC beacon + Stardust UDRL + Go extender plugins
A Bloodhound alternative. BloodBash will ingest the same files bloodhound does but no server is required to use this tool. It's great for quick AD enumeration.
A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.
GitHub-native command-and-control framework for authorized security research, with encrypted multi-channel transport and resilient failover.
aider is AI pair programming in your terminal
Multi-architecture Linux privilege escalation toolkit with 24 pre-built and runtime-compilable exploits. Auto-detects kernel version, filters patched exploits, tries each until root.
PoCs and exploits for CVEs discovered by VEGA.
autonomous red teaming platform; multi-agent offensive-security meta-harness
How To approach recon on real targets — from passive enumeration to origin IP discovery. Covers tools, automation, and the logic behind each phase.
dnsx is a fast and multi-purpose DNS toolkit allow to run multiple DNS queries of your choice with a list of user-supplied resolvers.
Reversed cassandra source code for educational purposes
A WiFi security auditing software mainly based on aircrack-ng tools suite
Abusing the win32k.sys kernel callback mechanism for arbitrary code execution
Quietly and anonymously bruteforce Active Directory usernames at insane speeds from Domain Controllers by (ab)using LDAP Ping requests (cLDAP)
Entra ID user enumeration and auth method discovery via the public GetCredentialType API
nadiee12312-lgtm / spiderfoot
Forked from smicallef/spiderfootSpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
Rust C2 agent for Mythic that produces polymorphic shellcode: per-build function shuffle + ChaCha20-encrypted data sections; no_std/no_main agent, PEB-walked APIs, WinHTTP comms.
The only browser automation that bypasses anti-bot systems. AI writes network hooks, clones UIs pixel-perfect via simple chat.
Decentralized C2 framework built on libp2p