Skip to content
View ahkeur's full-sized avatar

Block or report ahkeur

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

BOF for Havoc that copies locked Windows files (SAM, SYSTEM, NTDS.dit) via raw MFT parsing — no VSS, no Registry APIs, no PowerShell

C 128 8 Updated Apr 6, 2026

InfraGuard is a Command & Control Redirection Proxy and Manager which protects your Red Team Infrastructure against threat attribution

Python 147 9 Updated May 15, 2026

A rust library that allows you to host the CLR and execute dotnet binaries.

Rust 1 Updated May 13, 2026

a simple agent for mythic

C 3 Updated Feb 7, 2026

Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.

C++ 633 70 Updated Feb 2, 2026

A simple PUA encoder and a PoC

JavaScript 3 Updated Dec 10, 2025

LibWinHttp is a simplified WinHTTP wrapper designed as a Crystal Palace shared library for implant development. Its primary purpose is to facilitate the development of PICO modules that require HTT…

C 45 3 Updated Nov 4, 2025

PICO-Implant is a Proof of Concept C2 implant built using Position-independent Code Objects (PICO) for modular functionality. This project demonstrates that It's possible to build a multi-stage and…

C 54 5 Updated Nov 9, 2025

Chrome browser extension-based Command & Control

HTML 259 34 Updated Mar 18, 2026

AdaptixC2 is a highly modular advanced redteam toolkit

C++ 3,144 574 Updated May 16, 2026

This comprehensive and central repository is designed for cybersecurity enthusiasts, researchers, and professionals seeking to stay ahead in the field. It provides a valuable resource for those ded…

C++ 160 28 Updated May 22, 2025

Obfusk8: lightweight Obfuscation library based on C++17 / Header Only for windows binaries

C++ 690 64 Updated May 11, 2026

A cross platform library to write offensive and defensive security tools in Go

Go 142 6 Updated Apr 21, 2026

MCP Server for Ghidra

Java 8,951 912 Updated Jun 23, 2025

Stand up a simple Elastic container with Kibana, Fleet, and the Detection Engine

Shell 558 98 Updated Apr 10, 2026

Red Teaming Tactics and Techniques

PowerShell 4,594 1,136 Updated Aug 22, 2024

Privilege Escalation Enumeration Script for Windows

PowerShell 3,838 502 Updated Apr 29, 2026

BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)

C 197 18 Updated Feb 6, 2025

Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loading of a library from memory into a host process.

C 3,278 817 Updated Sep 3, 2022

A cross platform Go library to work with Windows Security Descriptors

Go 42 5 Updated Apr 17, 2026

Small portable AES128/192/256 in C

C 4,956 1,390 Updated Oct 4, 2024

smbclient-ng, a fast and user friendly way to interact with SMB shares.

Python 1,032 90 Updated Apr 17, 2026

This repository contains a list of python scripts to work with Microsoft RPC for research purposes.

Python 51 4 Updated Jan 31, 2025

A tool to generate a wordlist from the information present in LDAP, in order to crack passwords of domain accounts.

Python 377 31 Updated Mar 24, 2026

A list of methods to coerce a windows machine to authenticate to an attacker-controlled machine through a Remote Procedure Call (RPC) with various protocols.

Python 599 72 Updated Jan 31, 2025

A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.

Python 2,255 218 Updated Apr 24, 2026

The ldapconsole script allows you to perform custom LDAP requests to a Windows domain.

Python 69 11 Updated Apr 18, 2026

A python tool to parse and describe the contents of a raw ntSecurityDescriptor structure.

Python 30 11 Updated May 1, 2026