Skip to content
View AdministratorGithub's full-sized avatar

Block or report AdministratorGithub

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
22 stars written in PowerShell
Clear filter

PowerSploit - A PowerShell Post-Exploitation Framework

PowerShell 12,924 4,723 Updated Aug 17, 2020

Six Degrees of Domain Admin

PowerShell 10,562 1,789 Updated Mar 2, 2026

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

PowerShell 9,811 2,549 Updated Apr 25, 2024

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.

PowerShell 8,475 1,086 Updated Mar 20, 2026

Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mandiant.com

PowerShell 7,555 1,341 Updated Oct 16, 2025

K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetN…

PowerShell 6,159 2,078 Updated Jan 25, 2025

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

PowerShell 5,094 678 Updated Feb 25, 2026

Red Teaming Tactics and Techniques

PowerShell 4,520 1,129 Updated Aug 22, 2024

PowerShell Obfuscator

PowerShell 4,221 815 Updated Aug 10, 2023

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

PowerShell 2,510 501 Updated Nov 15, 2023

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made w…

PowerShell 2,079 216 Updated Dec 11, 2024

The goal of this repository is to document the most common techniques to bypass AppLocker.

PowerShell 2,056 366 Updated Sep 11, 2023

CobaltStrike后渗透测试插件

PowerShell 1,562 222 Updated Oct 28, 2021

Windows Exploits

PowerShell 1,292 528 Updated May 29, 2020

Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environment

PowerShell 1,195 163 Updated Oct 24, 2018

The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.

PowerShell 930 204 Updated Jun 22, 2020

ADRecon is a tool which gathers information about the Active Directory and generates a report which can provide a holistic picture of the current state of the target AD environment.

PowerShell 912 117 Updated Oct 15, 2024

Intranet penetration tools

PowerShell 880 257 Updated Nov 17, 2021

Red Team Scripts by d0nkeys (ex SnadoTeam)

PowerShell 703 133 Updated Jul 27, 2020

Cobalt Strike插件 - RDP日志取证&清除

PowerShell 363 71 Updated Dec 23, 2019

自己开的cs插件

PowerShell 248 38 Updated Feb 10, 2023

Active Directory Pentest Lab

PowerShell 9 2 Updated Jun 7, 2020