-
https://soffensive.github.io/
- https://x.com/evisneffos
Stars
- All languages
- AGS Script
- ASP.NET
- Assembly
- BlitzBasic
- C
- C#
- C++
- CSS
- CodeQL
- CoffeeScript
- Dockerfile
- Go
- HCL
- HTML
- Haskell
- Java
- JavaScript
- JetBrains MPS
- Jinja
- Jupyter Notebook
- Kotlin
- Lua
- MDX
- OCaml
- Open Policy Agent
- PHP
- Pascal
- Perl
- PowerShell
- Python
- Roff
- Ruby
- Rust
- Sage
- Shell
- Solidity
- Svelte
- TeX
- TypeScript
- Vim Script
- Vue
- XSLT
- YAML
- YARA
UniGetUI: The Graphical Interface for your package managers. Could be terribly described as a package manager manager to manage your package managers
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
mRemoteNG is the next generation of mRemote, open source, tabbed, multi-protocol, remote connections manager.
Secure, cross-platform Git credential storage with authentication to GitHub, Azure Repos, and other popular Git hosting services.
Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.
Deserialization payload generator for a variety of .NET formatters
a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
Set of tools to analyze Windows sandboxes for exposed attack surface.
Run PowerShell with rundll32. Bypass software restrictions.
PowerShell Runspace Post Exploitation Toolkit
SharpDPAPI is a C# port of some Mimikatz DPAPI functionality.
RunasCs - Csharp and open version of windows builtin runas.exe
SafetyKatz is a combination of slightly modified version of @gentilkiwi's Mimikatz project and @subtee's .NET PE Loader
A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.
Retrieves exported functions from a legitimate DLL and generates a proxy DLL source code/template for DLL proxy loading or sideloading
StandIn is a small .NET35/45 AD post-exploitation toolkit
Modifying SweetPotato to support load shellcode and webshell
Dump Azure AD Connect credentials for Azure AD and Active Directory
A tool that shows detailed information about named pipes in Windows
Puma Scan is a software security Visual Studio extension that provides real time, continuous source code analysis as development teams write code. Vulnerabilities are immediately displayed in the d…
Collection of tools for analyzing open source packages.
Local privilege escalation from SeImpersonatePrivilege using EfsRpc.
Red Team oriented C# Simple HTTP & WebDAV Server with Net-NTLM hashes capture functionality
Fuzzer for the .NET toolchains, developed as a project for the 2018 Language-Based Security course at Aarhus University.