XSGEG9's Stars
Hack-with-Github/Windows
Awesome tools to exploit Windows !
ytisf/theZoo
A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
Neo23x0/Loki
Loki - Simple IOC and YARA Scanner
abatchy17/WindowsExploits
Windows exploits, mostly precompiled. Not being updated. Check https://github.com/SecWiki/windows-kernel-exploits instead.
byt3bl33d3r/DeathStar
Uses Empire's (https://github.com/BC-SECURITY/Empire) RESTful API to automate gaining Domain and/or Enterprise Admin rights in Active Directory environments using some of the most common offensive TTPs.
rebootuser/LinEnum
Scripted Local Linux Enumeration & Privilege Escalation Checks
federicodotta/Java-Deserialization-Scanner
All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities
EmpireProject/Empire
Empire is a PowerShell and Python post-exploitation agent.
gfoss/PSRecon
:rocket: PSRecon gathers data from a remote Windows host using PowerShell (v2 or later), organizes the data into folders, hashes all extracted data, hashes PowerShell and various system properties, and sends the data off to the security team. The data can be pushed to a share, sent over email, or retained locally.
DhavalKapil/icmptunnel
Transparently tunnel your IP traffic through ICMP echo and reply packets.
lgandx/Responder
Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.
ztgrace/changeme
A default credential scanner.
TheRook/subbrute
A DNS meta-query spider that enumerates DNS records, and subdomains.
BloodHoundAD/BloodHound
Six Degrees of Domain Admin
ufrisk/pcileech
Direct Memory Access (DMA) Attack Software
dafthack/HostRecon
This function runs a number of checks on a system to help provide situational awareness to a penetration tester during the reconnaissance phase. It gathers information about the local system, users, and domain information. It does not use any 'net', 'ipconfig', 'whoami', 'netstat', or other system commands to help avoid detection.
vulnersCom/getsploit
Command line utility for searching and downloading exploits
PowerShell/PowerShell
PowerShell for every system!
pimps/wsuxploit
This is a weaponized WSUS exploit
hlldz/Phant0m
Windows Event Log Killer
WindowsExploits/Exploits
Windows Exploits
jtesta/ssh-mitm
SSH man-in-the-middle tool
n00py/WPForce
Wordpress Attack Suite
b3rito/yodo
Local Privilege Escalation
tennc/webshell
This is a webshell open source project
swisskyrepo/Wordpresscan
WPScan rewritten in Python + some WPSeku ideas
fwaeytens/dnsenum
dnsenum is a perl script that enumerates DNS information
danielbohannon/Revoke-Obfuscation
PowerShell Obfuscation Detection Framework
enjoiz/XXEinjector
Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF