Pinned Repositories
0day
各种CMS、各种平台、各种系统、各种软件漏洞的EXP、POC ,该项目将持续更新
2022-HW-POC
2022 护网行动 POC 整理
aksk_tool
AK资源管理工具,阿里云/腾讯云/华为云/AWS/UCLOUD/京东云/七牛云存储 AccessKey AccessKeySecret,利用AK获取资源信息和操作资源,ECS/CVM/E2/UHOST/ECI执行命令,OSS/COS/S3管理,RDS/DB管理,域名管理,添加RAM/CAM/IAM账号等
CallBackDump
能过卡巴、核晶、defender等杀软的dump lsass进程工具
CS-Remote-OPs-BOF
DumpThatLSASS
Dumping LSASS by Unhooking MiniDumpWriteDump by getting a fresh DbgHelp.dll copy from the disk , plus functions and strings obfuscation , it contains Anti-sandbox , if you run it under unperformant Virtual Machine you need to uncomment the code related to it and recompile.
EHole
EHole(棱洞)3.0 重构版-红队重点攻击系统指纹探测工具
go-shellcode
A repository of Windows Shellcode runners and supporting utilities. The applications load and execute Shellcode using various API calls or techniques.
GoBypassAV
整理了基于Go的16种API免杀测试、8种加密测试、反沙盒测试、编译混淆、加壳、资源修改等免杀技术,并搜集汇总了一些资料和工具。
goEncrypt
go语言封装的各种对称加密和非对称加密,可以直接使用,包括3重DES,AES的CBC和CTR模式,还有RSA非对称加密,ECC椭圆曲线的加密和数字签名
1rm's Repositories
1rm/2022-HW-POC
2022 护网行动 POC 整理
1rm/aksk_tool
AK资源管理工具,阿里云/腾讯云/华为云/AWS/UCLOUD/京东云/七牛云存储 AccessKey AccessKeySecret,利用AK获取资源信息和操作资源,ECS/CVM/E2/UHOST/ECI执行命令,OSS/COS/S3管理,RDS/DB管理,域名管理,添加RAM/CAM/IAM账号等
1rm/CallBackDump
能过卡巴、核晶、defender等杀软的dump lsass进程工具
1rm/CS-Remote-OPs-BOF
1rm/DumpThatLSASS
Dumping LSASS by Unhooking MiniDumpWriteDump by getting a fresh DbgHelp.dll copy from the disk , plus functions and strings obfuscation , it contains Anti-sandbox , if you run it under unperformant Virtual Machine you need to uncomment the code related to it and recompile.
1rm/GoBypassAV
整理了基于Go的16种API免杀测试、8种加密测试、反沙盒测试、编译混淆、加壳、资源修改等免杀技术,并搜集汇总了一些资料和工具。
1rm/HackBrowserData
Decrypt passwords/cookies/history/bookmarks from the browser. 一款可全平台运行的浏览器数据导出解密工具。
1rm/HijackLibs
Project for tracking publicly disclosed DLL Hijacking opportunities.
1rm/MasqueradingPEB
Maquerade any legitimate Windows binary by changing some fields in the PEB structure
1rm/nps
一款轻量级、高性能、功能强大的内网穿透代理服务器。支持tcp、udp、socks5、http等几乎所有流量转发,可用来访问内网网站、本地支付接口调试、ssh访问、远程桌面,内网dns解析、内网socks5代理等等……,并带有功能强大的web管理端。a lightweight, high-performance, powerful intranet penetration proxy server, with a powerful web management terminal.
1rm/schtask-bypass
免杀计划任务进行权限维持,过主流杀软。 A schtask tool bypass anti-virus
1rm/wechat-export
获取微信聊天记录数据库密钥并导出聊天记录,各版本通用。
1rm/AlternativeShellcodeExec
Alternative Shellcode Execution Via Callbacks【回调函数】
1rm/AtomPePacker
A Highly capable Pe Packer
1rm/Awesome-Profile-README-templates
A collection of awesome readme templates to display on your profile
1rm/Beacon
1rm/Beacon_Source
not a reverse-engineered version of the Cobalt Strike Beacon
1rm/ClipboardWindow-Inject
CLIPBRDWNDCLASS process injection technique(BOF) - execute beacon shellcode in callback
1rm/Cobalt-Strike-Profiles-for-EDR-Evasion
Cobalt Strike Profiles for EDR Evasion
1rm/cobaltstrike4.5_cdf
cobaltstrike4.5版本破/解、去除checksum8特征、bypass BeaconEye、修复错误路径泄漏stage、增加totp双因子验证等
1rm/CobaltStrike_OpenBeacon
Fully functional, from-scratch alternative to the Cobalt Strike Beacon (red teaming tool), offering transparency and flexibility for security professionals and enthusiasts.
1rm/Creeper-Awww-man
Creeper? Awww man!
1rm/csplugin
自己开的cs插件
1rm/Doge-Gabh
GetProcAddressByHash/remap/full dll unhooking/Tartaru's Gate/Spoofing Gate/universal/Perun's Fart/Spoofing-Gate/EGG/RecycledGate/syswhisper/RefleXXion golang implementation
1rm/EXOCET-AV-Evasion
EXOCET - AV-evading, undetectable, payload delivery tool
1rm/nuclei
Fast and customizable vulnerability scanner based on simple YAML based DSL.
1rm/PEASS-ng
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
1rm/robotgo
RobotGo, Go Native cross-platform GUI automation @vcaesar
1rm/Xray_Cracked
Update Xray1.9.4 Cracked for Windows,Linux and Mac OS.
1rm/yaegi
Yaegi is Another Elegant Go Interpreter