Skip to content
View kapiushion's full-sized avatar

Block or report kapiushion

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

141 stars written in C#
Clear filter

Lifetime AMSI bypass by @ZeroMemoryEx ported to .NET Framework 4.8

C# 351 46 Updated Aug 29, 2024

SharpSuccessor is a .NET Proof of Concept (POC) for fully weaponizing Yuval Gordon’s (@YuG0rd) BadSuccessor attack from Akamai.

C# 349 50 Updated Sep 26, 2025

A C# tool with more flexibility to customize scheduled task for both persistence and lateral movement in red team operation

C# 345 48 Updated Jan 22, 2025

LiquidSnake is a tool that allows operators to perform fileless lateral movement using WMI Event Subscriptions and GadgetToJScript

C# 342 49 Updated Sep 1, 2021
C# 338 39 Updated Nov 10, 2025

COM Hijacking VOODOO

C# 319 51 Updated Mar 11, 2025

Gain insights into MS-RPC implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By following this approach, a security researcher will hopefully…

C# 315 38 Updated Oct 20, 2025

Astral-PE is a low-level mutator (Headers/EP obfuscator) for native Windows PE files (x32/x64)

C# 314 29 Updated Apr 26, 2025

SharpDoor is alternative RDPWrap written in C# to allowed multiple RDP (Remote Desktop) sessions by patching termsrv.dll file.

C# 312 63 Updated Sep 30, 2019

MaLDAPtive is a framework for LDAP SearchFilter parsing, obfuscation, deobfuscation and detection.

C# 312 32 Updated Aug 7, 2024

Pass the Hash to a named pipe for token Impersonation

C# 310 53 Updated Nov 29, 2023

Executes position independent shellcode from an encrypted zip

C# 304 35 Updated Dec 22, 2020

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

C# 299 34 Updated Mar 1, 2023

Create MSIs using PowerShell.

C# 271 26 Updated Nov 1, 2025

Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domain joined machies

C# 266 30 Updated Dec 27, 2024

Dig your way out of networks like a Meerkat using SSH tunnels via ClickOnce.

C# 248 52 Updated May 2, 2025

Obfuscate ECMA CIL (.NET IL) assemblies to evade Windows Defender AMSI

C# 239 51 Updated Jun 9, 2023

All my Source Codes (Repos) for Red-Teaming & Pentesting + Blue Teaming

C# 234 42 Updated Oct 8, 2024

Tool designed to find folder exclusions using Windows Defender using command line utility MpCmdRun.exe as a low privileged user, without relying on event logs

C# 222 20 Updated Oct 6, 2024
C# 219 33 Updated Mar 10, 2024

C# Implementation of the Hell's Gate VX Technique

C# 215 54 Updated Jun 30, 2020

Hide your P/Invoke signatures through other people's signed assemblies

C# 211 33 Updated Mar 10, 2024

comprehensive .NET tool designed to extract and display detailed information about Windows Defender exclusions and Attack Surface Reduction (ASR) rules without Admin privileges

C# 209 18 Updated Jun 10, 2024

An App Domain Manager Injection DLL PoC on steroids

C# 202 21 Updated Dec 14, 2023

Tool for viewing NTDS.dit

C# 186 16 Updated Mar 14, 2025
C# 180 23 Updated Feb 3, 2021

SharpSilentChrome is a C# project that "silently" installs browser extensions on Google Chrome or MS Edge by updating the browsers' Preferences and Secure Preferences files. Currently, it only supp…

C# 178 29 Updated Aug 6, 2025

Spoofing desktop login applications with WinForms and WPF

C# 177 31 Updated Feb 19, 2024