GKNSB's Stars
cube0x0/noPac
CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.
antonioCoco/MalSeclogon
A little tool to play with the Seclogon service
aaaddress1/Skrull
Skrull is a malware DRM, that prevents Automatic Sample Submission by AV/EDR and Signature Scanning from Kernel. It generates launchers that can run malware on the victim using the Process Ghosting technique. Also, launchers are totally anti-copy and naturally broken when got submitted.
codewhitesec/HandleKatz
PIC lsass dumper using cloned handles
klezVirus/CVE-2021-40444
CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit
outflanknl/PrintNightmare
lockedbyte/CVE-2021-40444
CVE-2021-40444 PoC
knight0x07/ImpulsiveDLLHijack
C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can later be weaponized during Red Team Operations to evade EDR's.
GhostPack/Certify
Active Directory certificate abuse.
Flangvik/DeployPrinterNightmare
C# tool for installing a shared network printer abusing the PrinterNightmare bug to allow other network machines easy privesc!
eksperience/KnockOutlook
A little tool to play with Outlook
m0chan/m0chan.github.io
m0chan.github.io
dafthack/CloudPentestCheatsheets
This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage cloud providers.
Integration-IT/Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
bats3c/shad0w
A post exploitation framework designed to operate covertly on heavily monitored environments
mgeeky/Stracciatella
OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at startup
S1ckB0y1337/Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
EdOverflow/bugbounty-cheatsheet
A list of interesting payloads, tips and tricks for bug bounty hunters.
gryhathack/PowerSploit_Sensitive_Info_Hunter
Modifed PowerSploit/PowerView to search files and match RegEx for Sensitive info (PII, PCI, Passwords, Usernames, SNMP Strings, etc.)
Ch0pin/AVIator
Antivirus evasion project
Hackplayers/Salsa-tools
Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched
cobbr/SharpSploit
SharpSploit is a .NET post-exploitation library written in C#
anthemtotheego/SharpSploitConsole
paranoidninja/CarbonCopy
A tool which creates a spoofed certificate of any online website and signs an Executable for AV Evasion. Works for both Windows and Linux
no0be/DNSlivery
Easy files and payloads delivery over DNS
HarmJ0y/CheatSheets
Cheat sheets for various projects.
NetSPI/PowerUpSQL
PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server
chryzsh/DarthSidious
Building an Active Directory domain and hacking it
infosecn1nja/AD-Attack-Defense
Attack and defend active directory using modern post exploitation adversary tradecraft activity
rasta-mouse/Watson
Enumerate missing KBs and suggest exploits for useful Privilege Escalation vulnerabilities