- All languages
- Assembly
- Batchfile
- Boo
- C
- C#
- C++
- CSS
- Dart
- Dockerfile
- Emacs Lisp
- Go
- HCL
- HTML
- Haml
- Handlebars
- Java
- JavaScript
- Jinja
- Jupyter Notebook
- Lua
- Makefile
- Markdown
- Mathematica
- Objective-C
- PHP
- Pascal
- Perl
- PowerShell
- Pug
- Python
- REXX
- Roff
- Ruby
- Rust
- SCSS
- Scala
- Shell
- Svelte
- Swift
- TeX
- Text
- TypeScript
- Typst
- VBA
- Visual Basic
- Vue
- XSLT
- YAML
- YARA
- Zeek
- Zig
Starred repositories
ScareCrow - Payload creation framework designed around EDR bypass.
Terraform provider plugin for proxmox
Adversary tradecraft detection, protection, and hunting
☁️ ⚡ Granular, Actionable Adversary Emulation for the Cloud
Writing a container in a few lines of Go code, as seen at DockerCon 2017 and on O'Reilly Safari
Reverse Tunneling made easy for pentesters, by pentesters https://sysdream.com/
go-audit is an alternative to the auditd daemon that ships with many distros
Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods
Peirates - Kubernetes Penetration Testing tool
SourcePoint is a C2 profile generator for Cobalt Strike command and control servers designed to ensure evasion.
Chashell is a Go reverse shell that communicates over DNS. It can be used to bypass firewalls or tightly restricted networks.
Auditing for TLS certificates (Go code)
Quietly and anonymously bruteforce Active Directory usernames at insane speeds from Domain Controllers by (ab)using LDAP Ping requests (cLDAP)
A framework for constructing self-spreading binaries
FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is designed to be used in conjunction with a SIEM or other log ag…
Hershell is a simple TCP reverse shell written in Go.
Kubernetes focused container assessment and context discovery tool for penetration testing
Ransomware simulator written in Golang
A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalone or with other job schedulers like Nomad.
Threatest is a CLI and Go framework for end-to-end testing threat detection rules.