Skip to content
View thecybermafia's full-sized avatar

Block or report thecybermafia

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Fast covert timing channel communication for inter-process and inter-processor communication on Windows systems.

C++ 52 5 Updated Oct 30, 2025

Conquest is a feature-rich and malleable command & control/post-exploitation framework developed in Nim.

Nim 171 16 Updated Nov 5, 2025

This Chromium extension scans the page for external iFrames, Scripts, and Styles, logs them to the console, and checks if their domains are resolvable.

JavaScript 59 18 Updated Jan 8, 2025

Advanced Domain Controller attack and credential analysis tool leveraging DonPAPI database

Python 130 17 Updated Nov 3, 2025

GeoIntel using Google's Gemini API to uncover the location where photos were taken through AI-powered geo-location analysis.

Python 753 86 Updated Aug 29, 2025

Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By following this approach, a security researcher will hopeful…

PowerShell 111 10 Updated Oct 30, 2025

PowerShell tool that shows how to read and write NTLM OWF values via samlib.dll.

PowerShell 61 10 Updated Oct 22, 2025

free, open-source file scanner

TypeScript 298 14 Updated Nov 3, 2025

SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using Windows Filtering Platform (WFP). This version fo…

C 191 24 Updated Nov 3, 2025

EDR-Redir : a tool used to redirect the EDR's folder to another location.

C++ 132 21 Updated Nov 1, 2025

Proof-of-Concept tool for extracting NTLMv1 hashes from sessions on modern Windows systems.

C 405 33 Updated Oct 27, 2025

The DCERPC only printerbug.py version

Python 145 21 Updated Oct 30, 2025

Helps defenders find their WSUS configurations in the wake of CVE-2025-59287

PowerShell 38 1 Updated Oct 28, 2025

PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads

PowerShell 171 17 Updated Oct 30, 2025

WSUS Unauthenticated RCE

Python 152 21 Updated Oct 28, 2025

Exhaustive search and flexible filtering of Active Directory ACEs.

Python 58 8 Updated Oct 27, 2025

Unauthenticated start EFS service on remote Windows host (make PetitPotam great again)

Python 103 7 Updated Oct 23, 2025

A Windows executable 'loader' (in-memory patcher) for x86 and x64 targets, designed for controlled in-memory patching of executables (PE images).

C++ 20 4 Updated Oct 30, 2025

GUI for apktool, signapk, zipalign and baksmali utilities.

C# 1,095 121 Updated Aug 2, 2025

Blocking Windows EDR agents by registering an own IPC-object in the Object Manager’s namespace (CVE-2023-3280, CVE-2024-5909, CVE-2024-20671)

C++ 33 2 Updated Feb 27, 2025

Wonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but for security research and penetration testing! 🎫

C# 104 12 Updated Oct 21, 2025

Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does

Python 88 10 Updated Jul 3, 2025

Run BloodHound CE in a single-user setup with podman

Python 32 4 Updated Oct 25, 2025

A tool for folks who `git clone` first and ask questions later

Shell 60 1 Updated Sep 12, 2025

A Sliver C2 modification utility that enhances operational stealth by renaming protobuf definitions, regenerating protocol buffers, updating Go references, and resolving method call collisions. Des…

21 1 Updated Oct 23, 2025

Supporting PoCs and scripts for my talk "OverLAPS: Overriding LAPS Logic"

JavaScript 17 1 Updated Oct 12, 2025
Rust 24 3 Updated Oct 9, 2025

CyberSecurity BLUE TEAM containerized platform that brings together open-source tools for SIEM, DFIR, CTI, SOAR, and Network Analysis

Shell 344 68 Updated Oct 16, 2025
Next