Skip to content
View ajpc500's full-sized avatar

Block or report ajpc500

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

More examples using the Impacket library designed for learning purposes.

Python 266 24 Updated Nov 4, 2022

The Havoc Framework

Go 7,931 1,127 Updated Jul 10, 2025

Alternative Shellcode Execution Via Callbacks

C++ 1,649 320 Updated Nov 11, 2022

Run python from a single exe

Nim 35 2 Updated May 1, 2022

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

Rust 705 97 Updated Sep 26, 2023

Inject .NET assemblies into an existing process

C 504 72 Updated Jan 19, 2022

ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound, and also supports full-object dumping to NDJSON.

Python 1,010 137 Updated Aug 31, 2025

Robust and practical application control for Windows

PowerShell 668 80 Updated Aug 12, 2022

A centralized resource for previously documented WDAC bypass techniques

581 78 Updated Sep 8, 2025

Script to use SysWhispers2 direct system calls from Cobalt Strike BOFs

Python 126 19 Updated May 24, 2022

PowerShell script for automation of routine tasks done after fresh installations of Windows 10 / Server 2016 / Server 2019

PowerShell 4,683 1,068 Updated May 28, 2021

Sysmon-Like research tool for ETW

C++ 367 42 Updated Nov 15, 2022

Simple (relatively) things allowing you to dig a bit deeper than usual.

C 3,414 549 Updated Oct 20, 2025

A BOF to parse the imports of a provided PE-file, optionally extracting symbols on a per-dll basis.

C 86 11 Updated Oct 28, 2021

NKN shell daemon

JavaScript 30 8 Updated Jan 5, 2023

Example of running C3 (https://github.com/FSecureLABS/C3) in a Docker container

Shell 27 5 Updated Oct 24, 2021

BOF implementation of the research by @jonasLyk and the drafted PoC from @LloydLabs

C 187 23 Updated Oct 3, 2021

Rust Weaponization for Red Team Engagements.

Rust 2,938 332 Updated Apr 25, 2024

all paths lead to clouds

Go 638 49 Updated Oct 11, 2023

A header-only C++ library for accessing files in COFF binary format. (Including Windows PE/PE+ formats)

C++ 201 32 Updated Sep 11, 2025

PoC MSVC COFF Object file loader/injector.

C++ 184 25 Updated Mar 19, 2021

CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit

HTML 815 172 Updated Oct 11, 2023

Unofficial revival of the well known .NET debugger and assembly editor, dnSpy

C# 9,202 604 Updated Oct 27, 2025

Research code & papers from members of vx-underground.

C 1,314 252 Updated Dec 7, 2021

Collection of remote authentication triggers in C#

C 514 61 Updated May 15, 2024

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

C# 1,217 202 Updated Aug 27, 2023

LiquidSnake is a tool that allows operators to perform fileless lateral movement using WMI Event Subscriptions and GadgetToJScript

C# 342 49 Updated Sep 1, 2021

Proxy Unix applications in the terminal

Go 114 12 Updated Apr 14, 2021
Next