Lists (10)
Sort Name ascending (A-Z)
Starred repositories
😎 Awesome list of all things related to Microsoft Entra
Initial Access and Post-Exploitation Tool for AAD and O365 with a browser-based GUI
Active Directory and Internal Pentest Cheatsheets
TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts
A library for patching, replacing and decorating .NET and Mono methods during runtime
A User Impersonation tool - via Token or Shellcode injection
Vulnerable app with examples showing how to not use secrets
StandIn is a small .NET35/45 AD post-exploitation toolkit
⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡
ETM enables the creation of detailed attack graphs and figures while calculating the risk associated with your attack narratives. ETM was built keeping NIST recommendations on threat matrices in mi…
Rust crate to obfuscate strings and byte arrays so they are not in memory when not in use.
Fabric is an open-source framework for augmenting humans using AI. It provides a modular system for solving specific problems using a crowdsourced set of AI prompts that can be used anywhere.
An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.
Socks proxy, and reverse socks server using powershell.
Retrieves exported functions from a legitimate DLL and generates a proxy DLL source code/template for DLL proxy loading or sideloading
A tool to view and extract the contents of an Windows Installer (.msi) file.
Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with additional features (commands, utilities) and share th…
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP, IMAP, etc from a pcap file or from a live interface.
XSScope is one of the most powerful and advanced GUI Framework for Modern Browser exploitation via XSS.