Lists (32)
Sort Name ascending (A-Z)
Active Directory Security
Repos regarding Active Directory security/offensive tools for red teaming AD.AI/ML π€
Blue Team π
C2 Tools/Infrastructure π‘
Repos for C2 infrastructure and C2 tools.CLI π₯οΈ
CLI tools and reposCloud Security/Pentesting βοΈ
CobaltStrike
CobaltStrike ReposContent Discovery & Fuzzing
Tools for content discovery and fuzzing.CRTO π΄ βοΈ
Repos related to Zero-Point Security CRTO course for Red Team Operator 1 certificationCVEs
Collection of PoC for CVEsDocker Security π³
Domain Security
Tools regarding the security of domains, domain spoofing, subdomain takeover, etc.Google Cloud Security
Host Enumeration & PrivEsc π
Repos related to host enumeration, host recon, and PrivEsc.Kerberos πΆ
Repos related to Kerberos attack/defense/managementLudus π
Ludus related reposMalDocs π
Repos regarding maldocsMarkdown βοΈ
Repos regarding Markdown and markdown tools.NTLM Relaying & Forced Auth
Tools for NTLM relaying and forcing authOffsenive C#/.NET
Repos for offensive tooling in C# or .NETOSINT π΅οΈ
A collection of repos for OSINT!Password Attacks ποΈ
Repos related to password attacks, such as password spraying.Persistence πΎ
Repos relating to establishing/maintaining persistence on compromised hosts.Phishing π£
Repos to aid in phishing.PowerShell
Repos relating to PowerShell (Modules, Tools, Scripts, etc.)Proxy & Port Forwarding
Repos and tools for proxying and port forwarding!Red Team π©
Rust π¦
Repos related to RustSubdomain Enumeration & Hacking
WebSockets
Wordlists π
Collection of wordlists for password cracking, fuzzing, content discovery, username enumeration, etc.ZSH
Repos related to ZSH (Themes, plugins, etc.)- All languages
- ActionScript
- Arduino
- Assembly
- AutoIt
- Batchfile
- BlitzBasic
- C
- C#
- C++
- CMake
- CSS
- Dart
- Dockerfile
- Go
- Groff
- HCL
- HTML
- Hack
- Java
- JavaScript
- Jinja
- Jupyter Notebook
- Just
- Kotlin
- Lua
- Nim
- Nix
- OCaml
- Objective-C
- PHP
- Pascal
- Perl
- PowerShell
- Python
- QML
- R
- Roff
- Ruby
- Rust
- SCSS
- Shell
- Standard ML
- TypeScript
- VBA
- Vala
- Vim Script
- Vue
- YARA
- Zig
Starred repositories
takes shellcode with bad-characters and banishes them, returning cleaned shellcode with preserved functionalities
An AI-powered task-management system you can drop into Cursor, Lovable, Windsurf, Roo, and others.
An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents
Tower defense game that teaches cloud architecture. Build infrastructure, survive traffic, learn scaling.
Red teaming tool to dump LSASS memory, bypassing basic countermeasures.
Send files and folders anywhere in the world without storing in cloud - any size, any format, no accounts, no restrictions.
Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.
A fast reverse proxy to help you expose a local server behind a NAT or firewall to the internet.
All sysmon event types and their fields explained
Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!
Advanced Domain Controller attack and credential analysis tool leveraging DonPAPI database
The all-in-one Desktop & Docker AI application with built-in RAG, AI agents, No-code agent builder, MCP compatibility, and more.
π± a fast, batteries-included static-site generator that transforms Markdown content into fully functional websites
π€±π» Turn any webpage into a desktop app with one command.
Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus
Seven different DLL injection techniques in one single project.
Crystal Palace library for proxying Nt API calls via the Threadpool
Easy to use, open-source infrastructure management platform, crafted specifically for red team engagements.
A PoC backdoor that uses Gmail as a C&C server
This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP, IMAP, etc from a pcap file or from a live interface.
IP Rotation from different providers - Like FireProx but for GCP, Azure, Alibaba and CloudFlare
Self-developed tools for Lateral Movement/Code Execution
Blazingly π₯ fast π memory vulnerabilities, written in 100% safe Rust. π¦
Exploit Development and Reverse Engineering with GDB & LLDB Made Easy
A decompiler-agnostic plugin for interacting with AI in your decompiler. GPT-4, Claude, and local models supported!