Lists (32)
Sort Name ascending (A-Z)
AD
Active DomainAI-Hax0r
Book-Resource
BypassAV &Evasion EDR
Code Inject
Code repository
Third part Code repositoryCrypter, binder & downloader
Crypter, binder, downloaderDebug_Reverse
Dict
DictDocker_Cloud
EXP
HOOK
✨ Inspiration
Internet-tools
LPE
Local Privilege EscalationMITM
Net-tools
New_tech
Other
Persistence
Phishing
Quant_Trader
Ransomware
RAT Rootkit
Safe-tools
Security-Tools
Software-Project
Special Tools
This tool queries Active Directory for users with the UnixUserPassword, UserPassword, unicodePwd, or msSFU30Password properties populated.Spider
ToolsSet
litter ToolsTunnel Proxy
Win-Driver-Kernel
Stars
TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.
A little tool to play with Windows security
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
A tool to dump the login password from the current linux user
Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.
A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.
Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.
Generic PE loader for fast prototyping evasion techniques
Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.
How to hide a hook -- A hypervisor for rootkits. Phrack 69
koushui / TripleCross
Forked from h3xduck/TripleCrossA Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.
koushui / DrawBridge
Forked from landhb/DrawBridgeLayer 4 Single Packet Authentication Linux kernel module utilizing Netfilter hooks and kernel supported Berkeley Packet Filters (BPF)
koushui / ProcessInjection
Forked from sud01oo/ProcessInjectionSome ways to inject a DLL into a alive process
koushui / peinjector
Forked from JonDoNym/peinjectorpeinjector - MITM PE file infector
koushui / SharkLoadLibrary
Forked from b1nhack/SharkLoadLibraryLoadLibrary for Children's Paradise
koushui / RawTCP_Lib
Forked from h3xduck/RawTCP_LibA C library for creating and using TCP/IP packets with raw network sockets
koushui / rtsectiontest
Forked from Microwave89/rtsectiontestAn Attempt to Bypass Memory Scanners By Misusing the ntdll.dll "RT" Section.
koushui / hidden
Forked from JKornev/hiddenWindows driver with usermode interface which can hide objects of file-system and registry, protect processes and etc
koushui / C2oDNS
Forked from Matie26/C2oDNSPoC of the communication channel implemented over DNS protocol
koushui / noWatch
Forked from zimnyaa/noWatchImplant drop-in for EDR testing
koushui / Furtex
Forked from MatheuZSecurity/FurtexPost-exploitation and evasion research toolkit for Linux.
koushui / port_resue
Forked from killvxk/port_resueLinux下应用层注入/hook技术实现端口复用
koushui / injector
Forked from Microwave89/injectorCode Injector Using Code Caves