Pinned Repositories
_x64_Loader
Utilizing Alternative Shellcode Execution Via Callbacks
BlindFire
basically every perimeter has some for of user enum, i was annoyed of downloading and appending, so its been automated
cobalt-arsenal
Collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+
encode_payload
Creates C++ Stub with XOR/AES encode shellcode. Includes Decode stub. Also includes XOR/AES + Base64.
EvilnoVNC
Ready to go Phishing Platform
LinkedIn-Burp-PythonPlugin
Scrape Linked In Users via Burp/Browser - Current as of 03/13/2023
MS-MSDT-Office-RCE-Follina
CVE-2022-30190 | MS-MSDT Follina One Click
PassHoarder
create email:pass from CSV files and dump discovered valid users
TokenTactic-Parser
Wasnt happy to the token output so this python script reads the TokenLog.log file out, decoding the JWT, highlighting the user, and showing the Access/Refresh Token
Xll-Payload-Generator
Excel Add In Payload Generator
AchocolatechipPancake's Repositories
AchocolatechipPancake/MS-MSDT-Office-RCE-Follina
CVE-2022-30190 | MS-MSDT Follina One Click
AchocolatechipPancake/_x64_Loader
Utilizing Alternative Shellcode Execution Via Callbacks
AchocolatechipPancake/encode_payload
Creates C++ Stub with XOR/AES encode shellcode. Includes Decode stub. Also includes XOR/AES + Base64.
AchocolatechipPancake/LinkedIn-Burp-PythonPlugin
Scrape Linked In Users via Burp/Browser - Current as of 03/13/2023
AchocolatechipPancake/Xll-Payload-Generator
Excel Add In Payload Generator
AchocolatechipPancake/BlindFire
basically every perimeter has some for of user enum, i was annoyed of downloading and appending, so its been automated
AchocolatechipPancake/EvilnoVNC
Ready to go Phishing Platform
AchocolatechipPancake/PassHoarder
create email:pass from CSV files and dump discovered valid users
AchocolatechipPancake/TokenTactic-Parser
Wasnt happy to the token output so this python script reads the TokenLog.log file out, decoding the JWT, highlighting the user, and showing the Access/Refresh Token
AchocolatechipPancake/AchocolatechipPancake.github.io
Link --> https://achocolatechippancake.github.io/
AchocolatechipPancake/cobalt-arsenal
Collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+
AchocolatechipPancake/DNSBuster
Bash Script to Automate DNS OSINT while remaining in scope
AchocolatechipPancake/block-ips-script
AchocolatechipPancake/cloud-proxy
cloud-proxy creates multiple DO droplets and then starts local socks proxies using SSH
AchocolatechipPancake/cloud-proxy-autoconfig
AchocolatechipPancake/ctf-scripts
AchocolatechipPancake/DuckyWin10
figured id share for once lol xD
AchocolatechipPancake/encode-CS-shellcode
AchocolatechipPancake/evasion
AV EVASION TECHNIQUES
AchocolatechipPancake/go-simp-scanner
very basic port scanner with golang
AchocolatechipPancake/implant-zero
STL models for case - pi zero w with ethernet/usb
AchocolatechipPancake/keyhacks
Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
AchocolatechipPancake/mimikatz
A little tool to play with Windows security
AchocolatechipPancake/NameSpi
An OSINT employee/username enumeration tool
AchocolatechipPancake/NmapIT
Nmap Host List
AchocolatechipPancake/Odd-Shellcode-loading
Very Intriguing Shellcode Encoding Methods
AchocolatechipPancake/RadonFuscator
Packer for native binaries.
AchocolatechipPancake/ScareCrow
ScareCrow - Payload creation framework designed around EDR bypass.
AchocolatechipPancake/snapback
HTTP(s) Screenshots for Pen Testers Who Value Their Time
AchocolatechipPancake/statistically-likely-usernames
Wordlists for creating statistically likely username lists for use in password attacks and security testing