Skip to content
View kapiushion's full-sized avatar

Block or report kapiushion

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

141 stars written in C#
Clear filter

Windows Dependencies

C# 606 22 Updated Oct 10, 2025
C# 597 59 Updated Oct 31, 2025

Windows protocol library, including SMB and RPC implementations, among others.

C# 563 64 Updated Nov 3, 2025

DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the default settings).

C# 559 81 Updated Jun 5, 2023

Automated Hosting Information Hunting Tool - Windows 主机信息自动化狩猎工具

C# 538 53 Updated Apr 15, 2025

Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!

C# 519 56 Updated May 9, 2025

it is very good

C# 517 69 Updated Dec 20, 2022

.NET/PowerShell/VBA Offensive Security Obfuscator

C# 510 110 Updated Feb 1, 2024

Various ways to execute shellcode

C# 504 79 Updated Mar 13, 2024

UAC Bypass By Abusing Kerberos Tickets

C# 501 63 Updated Aug 10, 2023

A proof-of-concept Remote Desktop (RDP) session hijack utility

C# 492 88 Updated Nov 28, 2024

Obfuscator for .NET and Mono, with a customizable engine for building your own obfuscators.

C# 478 52 Updated Oct 27, 2025
C# 471 58 Updated Nov 20, 2024

A collection of C# shellcode injection techniques. All techniques use an AES encrypted meterpreter payload. I will be building this project up as I learn, discover or develop more techniques. Some …

C# 461 96 Updated Oct 22, 2021

DeadPotato is a windows privilege escalation utility from the Potato family of exploits, leveraging the SeImpersonate right to obtain SYSTEM privileges. This script has been customized from the ori…

C# 445 48 Updated Aug 17, 2024

C# Reflective loader for unmanaged binaries.

C# 442 67 Updated Jan 25, 2023

Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry

C# 439 43 Updated Aug 2, 2024

SeImpersonate privilege escalation tool for Windows 8 - 11 and Windows Server 2012 - 2022 with extensive PowerShell and .NET reflection support.

C# 426 47 Updated May 16, 2024

Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely

C# 421 76 Updated Jul 27, 2022

PoCs for Kernelmode rootkit techniques research.

C# 418 69 Updated Nov 4, 2025

C# Based Universal API Unhooker

C# 410 85 Updated Feb 18, 2022

Escalate Service Account To LocalSystem via Kerberos

C# 399 78 Updated Sep 14, 2023

.NET post-exploitation toolkit for Active Directory reconnaissance and exploitation

C# 398 44 Updated Jul 23, 2025

Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC

C# 387 48 Updated Sep 29, 2025

Multithreaded C# .NET Assembly to enumerate accessible network shares in a domain

C# 366 55 Updated Sep 20, 2025

Tools and PoCs for Windows syscall investigation.

C# 366 47 Updated Jun 9, 2025

The first standalone .NET decompiler for Mac, Linux and Windows

C# 360 31 Updated Nov 18, 2024