Stars
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
Covenant is a collaborative .NET C2 framework for red teamers.
Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.
a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
Run PowerShell with rundll32. Bypass software restrictions.
BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.
A .net OLE/COM viewer and inspector to merge functionality of OleView and Test Container
SafetyKatz is a combination of slightly modified version of @gentilkiwi's Mimikatz project and @subtee's .NET PE Loader
SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GPO) in order to compromise the objects that are controlled by…
This program is designed to demonstrate various process injection techniques
Remote Desktop Protocol .NET Console Application for Authenticated Command Execution
PoC tool to coerce Windows hosts authenticate to other machines via the MS-RPRN RPC interface. This is possible via other protocols as well.
Loads any C# binary in mem, patching AMSI + ETW.
OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team exercises.
Sandman is a NTP based backdoor for hardened networks.
Dump Azure AD Connect credentials for Azure AD and Active Directory
.NET 4.0 CLR Project to retrieve Chromium data, such as cookies, history and saved logins.
BadAssMacros - C# based automated Malicous Macro Generator.
Use SE_BACKUP_NAME/SeBackupPrivilege to access objects you shouldn't have access to
PowerShell Constrained Language Mode Bypass
Bypass AMSI by patching AmsiScanBuffer
Escalate as Administrator bypassing the UAC affecting administrator accounts only.
Collection of some of my own tools with other great open source tools out there packaged into a powershell module
Generates a Windows 'vulnerable' machine from ISOs
Shellcode Injector used on PEN300 and OSEP Exam