Skip to content
View S4CH's full-sized avatar
🎯
Creating new disturbance to diminish the older ones
🎯
Creating new disturbance to diminish the older ones

Sponsoring

@s0md3v

Organizations

@devs-nest @aurae-runtime @infosec-MNIT

Block or report S4CH

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
21 stars written in PowerShell
Clear filter

⚡ The most powerful open source tweaker on GitHub for fine-tuning Windows 10 & Windows 11

PowerShell 8,911 620 Updated Feb 3, 2026

Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab

PowerShell 2,248 438 Updated Apr 12, 2024

A Powershell incident response framework

PowerShell 1,636 280 Updated Nov 22, 2022

CobaltStrike后渗透测试插件

PowerShell 1,553 223 Updated Oct 28, 2021

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

PowerShell 1,430 135 Updated Jan 5, 2026

Dominate Active Directory with PowerShell.

PowerShell 1,158 120 Updated Nov 28, 2025

My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+

PowerShell 1,097 160 Updated Apr 19, 2023

Random Tools

PowerShell 852 213 Updated Oct 20, 2022

Aggressor Script, Kits, Malleable C2 Profiles, External C2 and so on

PowerShell 581 104 Updated Nov 22, 2022

Active Directory Auditing and Enumeration

PowerShell 515 56 Updated Dec 3, 2025

getsystem via parent process using ps1 & embeded c#

PowerShell 466 95 Updated Oct 26, 2023

A collection of various vulnerable (mostly physical memory exposing) drivers.

PowerShell 443 80 Updated Jun 15, 2022

Patch termsrv.dll so that multiple remote users can open an RDP session on a non-Windows Server computer

PowerShell 404 61 Updated Feb 2, 2026

Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-native executables.

PowerShell 260 42 Updated Apr 14, 2025

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares

PowerShell 191 22 Updated Feb 5, 2023
PowerShell 116 17 Updated Jun 17, 2025
PowerShell 82 20 Updated Nov 7, 2025
PowerShell 14 3 Updated Jul 21, 2023
PowerShell 12 1 Updated Apr 28, 2025

Bridge your WSL instance onto to your network

PowerShell 11 1 Updated Jul 6, 2024

Research on WDEG (Windows Defender Exploit Guard) and its components.

PowerShell 2 Updated May 4, 2020