-
Ryujin Public
Forked from keowu/RyujinRyūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool
C++ GNU General Public License v2.0 UpdatedNov 14, 2025 -
RegPersist Public
Forked from leftp/RegPersista BOF implementation of various registry persistence methods
C MIT License UpdatedNov 11, 2025 -
EntraMFACheck Public
Forked from AlexLinov/EntraMFACheckIdentify Azure AD resources that issue tokens without MFA enforcement using the ROPC grant flow.
-
EDR-Redir Public
Forked from TwoSevenOneT/EDR-RedirEDR-Redir : a tool used to redirect the EDR's folder to another location.
C++ UpdatedNov 7, 2025 -
sandbox-attacksurface-analysis-tools Public
Forked from googleprojectzero/sandbox-attacksurface-analysis-toolsSet of tools to analyze Windows sandboxes for exposed attack surface.
C# Apache License 2.0 UpdatedNov 6, 2025 -
SilentButDeadly Public
Forked from loosehose/SilentButDeadlySilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using Windows Filtering Platform (WFP). This version fo…
C UpdatedNov 3, 2025 -
Titanis Public
Forked from trustedsec/TitanisWindows protocol library, including SMB and RPC implementations, among others.
C# GNU General Public License v3.0 UpdatedNov 3, 2025 -
ADCSDevilCOM Public
Forked from 7hePr0fess0r/ADCSDevilCOMA C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA server using the MS-WCCE protocol over DCOM and It bypasses …
C# UpdatedNov 2, 2025 -
WSASS Public
Forked from TwoSevenOneT/WSASSThis is the tool to dump the LSASS process on modern Windows 11
C++ UpdatedNov 2, 2025 -
EDR-Freeze Public
Forked from TwoSevenOneT/EDR-FreezeEDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.
C++ UpdatedNov 2, 2025 -
BruteForceAI Public
Forked from MorDavid/BruteForceAIAdvanced LLM-powered brute-force tool combining AI intelligence with automated login attacks
Python Other UpdatedNov 1, 2025 -
UnderlayCopy Public
Forked from kfallahi/UnderlayCopyPowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads
PowerShell UpdatedOct 30, 2025 -
cross-file-obfuscator Public
Forked from masterqiu01/cross-file-obfuscatorGo 代码混淆工具,使用 AST (抽象语法树) 技术实现跨文件的代码混淆,同时保证混淆后的代码可编译和可执行。
Go MIT License UpdatedOct 27, 2025 -
check-if-email-exists Public
Forked from reacherhq/check-if-email-existsCheck if an email address exists without sending any email, written in Rust. Comes with a ⚙️ HTTP backend.
Rust Other UpdatedOct 27, 2025 -
DumpGuard Public
Forked from bytewreck/DumpGuardProof-of-Concept tool for extracting NTLMv1 hashes from sessions on modern Windows systems.
C BSD 3-Clause "New" or "Revised" License UpdatedOct 25, 2025 -
Wonka Public
Forked from Shac0x/WonkaWonka is a sweet Windows tool that extracts Kerberos tickets from the Local Security Authority (LSA) cache. Like finding a ticket, but for security research and penetration testing! 🎫
C# GNU General Public License v3.0 UpdatedOct 21, 2025 -
Snaffler Public
Forked from SnaffCon/Snafflera tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
-
offlineSCCMdecrypt Public
Forked from MartinoTommasini/offlineSCCMdecryptStep-by-step documentation on how to decrypt SCCM database secrets offline
Python UpdatedOct 20, 2025 -
PPN Public
Forked from snovvcrash/PPNPentester's Promiscuous Notebook
GNU General Public License v3.0 UpdatedOct 18, 2025 -
cve Public
Forked from trickest/cveGather and update all available and newest CVEs with their PoC.
HTML MIT License UpdatedOct 6, 2025 -
SockTail Public
Forked from Yeeb1/SockTailLightweight binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy. Designed for red team operations and ephemeral access into restricted environments using Tailscale’s …
Go UpdatedOct 3, 2025 -
AsmLdr Public
Forked from 0xNinjaCyclone/AsmLdrDynamic shellcode loader with sophisticated evasion capabilities
Assembly MIT License UpdatedOct 1, 2025 -
msi_lateral_mv Public
Forked from werdhaihai/msi_lateral_mvLateral Movement Bof with MSI ODBC Driver Install
C MIT License UpdatedSep 30, 2025 -
flareprox Public
Forked from MrTurvey/flareproxUse Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox
Python MIT License UpdatedSep 29, 2025 -
LaZagne Public
Forked from AlessandroZ/LaZagneCredentials recovery project
Python GNU Lesser General Public License v3.0 UpdatedSep 26, 2025 -
obex Public
Forked from dis0rder0x00/obexObex – Blocking unwanted DLLs in user mode
C BSD 3-Clause "New" or "Revised" License UpdatedSep 18, 2025 -
pyLDAPGui Public
Forked from ZephrFish/pyLDAPGuiPython based GUI for browsing LDAP
Python MIT License UpdatedSep 15, 2025 -
Inboxfuscation Public
Forked from Permiso-io-tools/InboxfuscationInboxfuscation is an advanced offensive & defensive framework for mailbox rule obfuscation and detection in Exchange environments.
PowerShell Apache License 2.0 UpdatedSep 11, 2025 -
WatchDogKiller Public
Forked from j3h4ck/WatchDogKillerPoC exploit for the vulnerable WatchDog Anti-Malware driver (amsdk.sys) – weaponized to kill protected EDR/AV processes via BYOVD.
C++ UpdatedSep 11, 2025 -
MFTool Public
Forked from Kudaes/MFToolDirect access to NTFS volumes
Rust Apache License 2.0 UpdatedSep 9, 2025