Skip to content
View Julien-Ou's full-sized avatar

Block or report Julien-Ou

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Custom Amsi Bypass by patching AmsiOpenSession function in amsi.dll

PowerShell 53 11 Updated Jun 16, 2025

OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at startup

C# 542 62 Updated Sep 18, 2022

Situational Awareness commands implemented using Beacon Object Files

C 22 5 Updated Mar 21, 2026

Situational Awareness commands implemented using Beacon Object Files

C 1,815 290 Updated Mar 10, 2026

Malformed ZIP archive that evades antivirus detection by declaring Method=0 (stored) while containing DEFLATE-compressed payload.

Python 191 35 Updated Mar 19, 2026

ArtWeb: Lightweight Cross-Platform HTTP(S) Server written in C

C++ 2 Updated Feb 14, 2026

Tiny and fast port scanner (Sliver edition)

C++ 30 1 Updated Feb 17, 2026

A new AMSI Bypass technique using .NET ALI Call Hooking.

PowerShell 194 38 Updated Nov 15, 2022

Monitor linux processes without root permissions

Go 6,062 566 Updated Mar 1, 2026

Slack Enumeration and Extraction Tool - extract sensitive information from a Slack Workspace

Python 781 107 Updated Jan 31, 2025

Evil SQL Client (ESC) is an interactive .NET SQL console client with enhanced SQL Server discovery, access, and data exfiltration features. While ESC can be a handy SQL Client for daily tasks, it w…

C# 308 44 Updated Apr 25, 2023

Fileless lateral movement tool that relies on ChangeServiceConfigA to run command

C 1,640 256 Updated Jul 10, 2023

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

PowerShell 2,530 495 Updated Nov 15, 2023

Extracting Clear Text Passwords from mstsc.exe using API Hooking.

C++ 1,454 362 Updated Jul 20, 2024

Tool to bypass LSA Protection (aka Protected Process Light)

C++ 997 147 Updated Dec 4, 2022

Abusing impersonation privileges through the "Printer Bug"

C 2,257 366 Updated Sep 10, 2020

PoC tool to coerce Windows hosts authenticate to other machines via the MS-RPRN RPC interface. This is possible via other protocols as well.

C# 1,134 150 Updated May 29, 2024

Modified Spool Sample for SEImpersonate Privilege Escalation.

C# 17 8 Updated Aug 3, 2022

A collection of useful tools and scripts were developed and gathered throughout the Offensive Security's PEN-300 (OSEP) course.

PowerShell 351 82 Updated Aug 9, 2025

DebugAmsi is another way to bypass AMSI through the Windows process debugger mechanism.

C++ 102 22 Updated Sep 18, 2023

A tool to create a JScript file which loads a .NET v2 assembly from memory.

C# 1,329 301 Updated Jan 18, 2021

A workshop about Malware Development

Nim 1,796 234 Updated Jun 2, 2023

A repository with my notable code snippets for Offensive Security's PEN-300 (OSEP) course.

C# 1,445 484 Updated Jul 27, 2025

Use SE_BACKUP_NAME/SeBackupPrivilege to access objects you shouldn't have access to

C# 455 61 Updated Jul 29, 2013

A Python based ingestor for BloodHound

Python 2,402 379 Updated Oct 24, 2025

World's fastest and most advanced password recovery utility

C 26,168 3,459 Updated Feb 20, 2026

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

C# 595 59 Updated Mar 19, 2024

Exploitation paths allowing you to (mis)use the Windows Privileges to elevate your rights within the OS.

2,472 306 Updated Feb 24, 2023

Kernel mode WinDbg extension and PoCs for token privilege investigation.

C# 918 128 Updated May 22, 2026
PowerShell 29 6 Updated May 16, 2023
Next