Skip to content
View rev10d's full-sized avatar

Organizations

@DefensiveOrigins

Block or report rev10d

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Trying to tame the three-headed dog.

C# 5,126 897 Updated May 21, 2026

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

Rust 3,307 288 Updated Aug 3, 2026

Simple script to test if NLA (network level Authentication) is disabled.

PowerShell 2 Updated May 12, 2026
Python 846 101 Updated Sep 9, 2022

Repository hosting a static list of Microsoft First party apps and Graph permissions that's updated daily

PowerShell 243 35 Updated Aug 11, 2026

No-as-a-Service (NaaS) is a simple API that returns a random rejection reason. Use it when you need a realistic excuse, a fun “no,” or want to simulate being turned down in style.

JavaScript 7,872 493 Updated May 9, 2026

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

Python 794 85 Updated Nov 11, 2025

Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.

C++ 641 71 Updated Feb 2, 2026
HTML 2 Updated Jul 31, 2023

Tool for Active Directory Certificate Services enumeration and abuse

Python 3,626 483 Updated Jul 30, 2026

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

HTML 232 28 Updated Apr 14, 2025

Additional resources

12 1 Updated Sep 12, 2025

Weaponizing DCOM for NTLM Authentication Coercions

Python 275 22 Updated Jul 1, 2025

Run PowerShell command without invoking powershell.exe

Python 1,556 261 Updated Apr 9, 2026
Go 19 Updated May 26, 2025

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Go 5,592 839 Updated Apr 17, 2025

Rebuild of portspoof in GO with additional features.

Go 32 9 Updated Apr 7, 2026

extract remote timestamp from hping3 icmp replies

Python 5 Updated May 12, 2026

Enhanced version of secretsdump.py from Impacket. Adds multi-threading and accepts an input file with a list of target hosts for simultaneous secrets extraction.

Python 259 33 Updated Jul 31, 2023

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

PowerShell 2,546 497 Updated Nov 15, 2023

A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).

793 97 Updated Jun 3, 2026

Code included as part of the MustLearnKQL blog series

1,185 201 Updated Jan 30, 2026

A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.

PowerShell 2,126 354 Updated Nov 20, 2025

Set of tools to audit SIP based VoIP Systems

Python 571 95 Updated Jun 26, 2026
PowerShell 60 32 Updated Jul 19, 2023

Bloodhound Reporting for Blue and Purple Teams

Python 1,309 130 Updated Nov 15, 2025

PowerHuntShares is an audit script designed in inventory, analyze, and report excessive privileges configured on Active Directory domains.

PowerShell 1,048 116 Updated Oct 15, 2025

Miscellaneous scripts for pentesting

Shell 219 40 Updated Mar 22, 2018

Arsenal is just a quick inventory and launcher for hacking programs

Python 3,773 547 Updated Nov 29, 2024
Next