Lists (29)
Sort Name ascending (A-Z)
AD域渗透
Android渗透
BurpSuite插件
C2框架+免杀
C2框架、后门相关学习资料Chrome插件
CobaltStrike插件
IMOO破解
小天才产品破解IOT渗透
K8s+云服务渗透
LLM安全
Magisk模块
Payload+账号密码字典
POC+EXP集合
RootKit权限维持
权限维持Scan指纹+漏洞
SOC安全运营
安全防御、安全监控、基线检测SSDLC研发安全
研发过程安全工具vCenter渗透
VPN+代理隧道
Webshell管理
Web漏洞利用
Wx小程序渗透
微信小程序渗透工具Xposed模块
基础运维
学习资料
应急响应
日常办公
本地提权
社会工程学
Stars
Encode and Fuzz Custom Protobuf Messages in Burp Suite
An advanced [Finder | Checker | Server] tool for proxy servers, supporting both HTTP(S) and SOCKS protocols. 🎭
BOF for Kerberos abuse (an implementation of some important features of the Rubeus).
A local privilege escalation vulnerability in VMware vCenter Server (and VMware Cloud Foundation) caused by a misconfiguration of sudo, allowing an authenticated user with non-administrative privil…
Tool designed to find folder exclusions using Windows Defender using command line utility MpCmdRun.exe as a low privileged user, without relying on event logs
.NET post-exploitation toolkit for Active Directory reconnaissance and exploitation
Python implementation of GhostPack's Seatbelt situational awareness tool
Golang Automation Framework for Cobalt Strike using the Rest API
Collection of many ldap bofs for domain enumeration and privilege escalation. Created for use with the Adaptix C2.
Proof-of-Concept tool for extracting NTLMv1 hashes from sessions on modern Windows systems.
Attempt at Obfuscated version of SharpCollection
Inject .NET assemblies into an existing process
Collection of Beacon Object Files (BOF) for Cobalt Strike
InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assembly execution as an alternative to Cobalt Strikes traditiona…
A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.
Creating a repository with all public Beacon Object Files (BoFs)
内网资产收集、探测主机存活、端口扫描、域控定位、文件搜索、各种服务爆破(SSH、SMB、MsSQL等)、Socks代理,一键自动化+无文件落地扫描
Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps release pipelines.
Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.
A tool that helps you find the real IP addresses hiding behind Cloudflare by checking subdomains.