Highlights
- Pro
Stars
Tala WTE - Wireless Training Environment by VTEM Labs (open counterpart to TALA)
AI Red Teaming playground labs to run AI Red Teaming trainings including infrastructure.
Cognito Identity Situational Awareness and Exploitation
Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to run a full investigation against a customer’s Azur…
c6fc / npk
Forked from Coalfire-Research/npkA mostly-serverless distributed hash cracking platform
Python library with CLI allowing to remotely dump domain user credentials via an ADCS without dumping the LSASS process memory
Script to root AVDs running with QEMU Emulator from Android Studio
Peirates - Kubernetes Penetration Testing tool
CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool
A Windows reverse shell payload generator and handler that abuses the http(s) protocol to establish a beacon-like reverse shell.
TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts
An offensive/defense security toolset for discovery, recon and ethical assessment of AI Agents
The SpecterOps project management and reporting engine
Advisories, proof of concept files and exploits that have been made public by @pedrib.
A PowerShell armoury for security guys and girls
KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).
💀 Generate malicious PDF test files for testing phone-home callbacks, SSRF, XSS, NTLM credential theft, and data exfiltration in PDF viewers, converters, and web applications. Can be used with Burp…
Proof-of-concept obfuscation toolkit for C# post-exploitation tools
A simple shell code encryptor/decryptor/executor to bypass anti virus.
A simple python implementation of a BITS server.
This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR in context of download cradle detections.
This repo is where I store my Threat Hunting ideas/content
Vagrant VirtualBox environment for conducting an internal network penetration test
Azure Red Team tool for graphing Azure and Azure Active Directory objects
Writing custom backdoor payloads with C# - Defcon 27 Workshop