BC Security
Cybersecurity Engineers and Offensive Security enthusiasts actively maintaining/updating Powershell Empire in our spare time.
Pinned Repositories
Beginners-Guide-to-Obfuscation
DEFCON27
DEFCON 27 slides and workshop materials.
Empire
Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.
Invoke-PrintDemon
This is a PowerShell Empire launcher PoC using PrintDemon and Faxhell.
Invoke-ZeroLogon
Invoke-ZeroLogon allows attackers to impersonate any computer, including the domain controller itself, and execute remote procedure calls on their behalf.
IronSharpPack
IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then reflective load the C# project.
Malleable-C2-Profiles
Malleable C2 Profiles. A collection of profiles used in different projects using Cobalt Strike & Empire.
Moriarty
Moriarty is designed to enumerate missing KBs, detect various vulnerabilities, and suggest potential exploits for Privilege Escalation in Windows environments.
Offensive-VBA-and-XLS-Entanglement
Starkiller
Starkiller is a Frontend for PowerShell Empire.
BC Security's Repositories
BC-SECURITY/Empire
Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.
BC-SECURITY/Starkiller
Starkiller is a Frontend for PowerShell Empire.
BC-SECURITY/Beginners-Guide-to-Obfuscation
BC-SECURITY/Moriarty
Moriarty is designed to enumerate missing KBs, detect various vulnerabilities, and suggest potential exploits for Privilege Escalation in Windows environments.
BC-SECURITY/Malleable-C2-Profiles
Malleable C2 Profiles. A collection of profiles used in different projects using Cobalt Strike & Empire.
BC-SECURITY/IronSharpPack
IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then reflective load the C# project.
BC-SECURITY/Long-Live-The-Empire
A comprehensive workshop aimed to equip participants with an in-depth understanding of modern Command and Control (C2) concepts, focusing on the open-source Empire C2 framework.
BC-SECURITY/ScriptBlock-Smuggling
Example code samples from our ScriptBlock Smuggling Blog post
BC-SECURITY/Taming-Offensive-IronPython
This workshop is designed to provide you with a solid understanding of IronPython, its integration with the .NET framework, and how it can be used to interact with other .NET languages.
BC-SECURITY/Red-Team-Village-CTF-2023
Secure Terminal CTF Challenge for DC31 Red Team Village
BC-SECURITY/SocksProxyServer-Plugin
Socks Proxy Server Plugin for Invoke-SocksProxy
BC-SECURITY/DeathStarPlugin
Deathstar is an Empire plugin that automates gaining Domain and/or Enterprise Admin rights in Active Directory environments using common offensive tactics, techniques, and procedures (TTPs).
BC-SECURITY/empire-docs
https://bc-security.gitbook.io/empire-wiki/
BC-SECURITY/donut
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
BC-SECURITY/NVNC
The first open-source .NET VNC Server written entirely in the C# programming language.
BC-SECURITY/ChiselServer-Plugin
BC-SECURITY/Sharpire
A C# implementation of the PowerShell Empire Agent
BC-SECURITY/Empire-Compiler
BC-SECURITY/CrackMapExec
A swiss army knife for pentesting networks
BC-SECURITY/DotNetStratumMiner
A Stratum miner in C#
BC-SECURITY/intro-ctf
BC-SECURITY/Twilio-Plugin
BC-SECURITY/AutoRun-Plugin
Plugin to automatically execute an agent tasking on checkin
BC-SECURITY/denylist-plugin
BC-SECURITY/Empire-Launcher
BC-SECURITY/PySecretSOCKS
A python socks server for tunneling a connection over another channel
BC-SECURITY/Report-Generation-Plugin
Plugin for replacing the original reporting functionality in Empire with customizable PDFs.
BC-SECURITY/bomutils
Open source tools to create bill-of-materials files used in Mac OS X installers
BC-SECURITY/md2pdf
Markdown to PDF conversion tool
BC-SECURITY/RunOF