Highlights
- Pro
Stars
Advanced Active Directory network topology analyzer with SMB validation, multiple authentication methods (password/NTLM/Kerberos), and comprehensive network discovery. Export results as BloodHound‑…
Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.
Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)
Exploitation paths allowing you to (mis)use the Windows Privileges to elevate your rights within the OS.
rasta-mouse / MinHook.NET
Forked from CCob/MinHook.NETA C# port of the MinHook API hooking library
DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.
One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️
Multiplatform Telegram Bot in pure PowerShell
A list of all the DLLs export in C:\windows\system32\
SysWhispers on Steroids - AV/EDR evasion via direct system calls.
Simple (relatively) things allowing you to dig a bit deeper than usual.
Exploit for CVE-2022-21999 - Windows Print Spooler Elevation of Privilege Vulnerability (LPE)
A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats. Supports: ZIP, 7zip, PDF, ISO, IMG, CAB, VHD, VHDX
Identify privilege escalation paths within and across different clouds
A Huge Learning Resources with Labs For Offensive Security Players
This repo covers some code execution and AV Evasion methods for Macros in Office documents
Pure C++, weaponized, fully automated implementation of RottenPotatoNG
Local Service to SYSTEM privilege escalation from Windows 7 to Windows 10 / Server 2019
UnhookMe is an universal Windows API resolver & unhooker addressing problem of invoking unmonitored system calls from within of your Red Teams malware
Template-Driven AV/EDR Evasion Framework
AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.
Automation for internal Windows Penetrationtest / AD-Security
Simple & Customizable DNS Data Exfiltrator