- All languages
- Assembly
- Batchfile
- Bikeshed
- Boo
- Bro
- C
- C#
- C++
- CSS
- Clojure
- Cuda
- DIGITAL Command Language
- Dart
- Dockerfile
- F#
- FreeMarker
- Go
- Groovy
- HTML
- JSON
- Java
- JavaScript
- Jinja
- Jupyter Notebook
- Kotlin
- Lua
- MDX
- Makefile
- Markdown
- OCaml
- PHP
- Perl
- PowerShell
- Propeller Spin
- Python
- R
- REXX
- Ruby
- Rust
- SCSS
- SaltStack
- Sass
- Scala
- Shell
- TSQL
- TeX
- TypeScript
- VBA
- Vue
- XSLT
- YAML
- YARA
- Zeek
Starred repositories
Six Degrees of Domain Admin
The Microsoft community Windows Package Manager manifest repository
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.
Empire is a PowerShell and Python post-exploitation agent.
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mandiant.com
The Official USB Rubber Ducky Payload Repository
PowerShell script for automation of routine tasks done after fresh installations of Windows 10 / Server 2016 / Server 2019
Automation for internal Windows Penetrationtest / AD-Security
Privilege Escalation Enumeration Script for Windows
Pester is the ubiquitous test and mock framework for PowerShell.
MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It ca…
A repository of sysmon configuration modules
A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.
My musings with PowerShell
PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server
A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.
Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made w…
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAR…
A post-exploitation powershell tool for extracting juicy info from memory.
A tool for checking if MFA is enabled on multiple Microsoft Services
Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 environment.
A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.
Windows Templates for Packer: Windows 11, Windows 10, Windows Server 2022, 2019, 2016, also with Docker
SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, SuperPuTTY, FileZilla, and Microsoft Remote Desktop. It can be r…
A collection of Red Team focused tools, scripts, and notes
Some usefull Scripts and Executables for Pentest & Forensics
A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a tenant doesn't exist, if a user doesn't exist, i…
PowerShell toolkit for AD CS auditing based on the PSPKI toolkit.