Lists (1)
Sort Name ascending (A-Z)
Stars
Indirect Syscall with TartarusGate Approach in Go
DynLoader A modular Windows loader focused on EDR evasion Built with indirect syscall (Tartarus Gate / Hell’s Gate), Manual PE parsing & Section mapping, API hashing & Dynamic resolution, fileless …
Get file less command execution for lateral movement.
RpcView is a free tool to explore and decompile Microsoft RPC interfaces
EDRBypassZoo is a technical collection of PoCs showcasing various techniques to evade modern EDR detection, including IAT unhooking, syscall spoofing, stack manipulation, and memory unhooking. The …
Makes your AI agent think like the laziest senior dev in the room. The best code is the code you never wrote.
Provides an advanced baseline to implement a secure Windows auditing strategy on Windows OS.
WhatAboutSAM is my custom PoC of a Windows SAM dumper
lgandx / Responder
Forked from SpiderLabs/ResponderResponder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…
A list of useful Powershell scripts with 100% AV bypass (At the time of publication).
Dynamic shellcode loader with sophisticated evasion capabilities
Next.js v16.2.4 Security PoC Collection (CVE-2026-23870, CVE-2026-44575, CVE-2026-44579, CVE-2026-44574, CVE-2026-44578, CVE-2026-44573, CVE-2026-44581, CVE-2026-44580, CVE-2026-44577, CVE-2026-445…
ToolShell scanner - CVE-2025-53770 and detection information
DoS tool for HTTP requests (inspired by hulk but has more functionalities)
A portable C# utility for enumerating local and remote windows sessions
EDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.
Collection of many ldap bofs for domain enumeration and privilege escalation. Created for use with the Adaptix C2.
Proof-of-Concept tool for extracting credential material from protected sessions on modern Windows systems.
ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound via BOFHound, and also supports full-object dumping to NDJSON.
Weaponizing DCOM for NTLM Authentication Coercions
Exhaustive search and flexible filtering of Active Directory ACEs.
Bring runZero Exposure Management into BloodHound
Collection of Cyber Threat Intelligence sources from the deep and dark web
DNS Exfiltration tool for stealthily sending files over DNS requests.