advancedeng's Stars
PowerShellMafia/PowerSploit
PowerSploit - A PowerShell Post-Exploitation Framework
BloodHoundAD/BloodHound
Six Degrees of Domain Admin
samratashok/nishang
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
byt3bl33d3r/CrackMapExec
A swiss army knife for pentesting networks
n1nj4sec/pupy
Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C
hslatman/awesome-threat-intelligence
A curated list of Awesome Threat Intelligence resources
EmpireProject/Empire
Empire is a PowerShell and Python post-exploitation agent.
yarrick/iodine
Official git repo for iodine dns tunnel
infobyte/faraday
Open Source Vulnerability Management Platform
byt3bl33d3r/MITMf
Framework for Man-In-The-Middle attacks
iagox86/dnscat2
ThreatHuntingProject/ThreatHunting
An informational repo about hunting for adversaries in your IT environment.
Cn33liz/p0wnedShell
PowerShell Runspace Post Exploitation Toolkit
nidem/kerberoast
HarmJ0y/CheatSheets
Cheat sheets for various projects.
Genetic-Malware/Ebowla
Framework for Making Environmental Keyed Payloads (NO LONGER SUPPORTED)
vyrus001/go-mimikatz
A wrapper around a pre-compiled version of the Mimikatz executable for the purpose of anti-virus evasion.
0x27/linux.mirai
Leaked Linux.Mirai Source Code for Research/IoC Development Purposes
mubix/post-exploitation-wiki
Post Exploitation Wiki
Ben0xA/nps
Not PowerShell
darkoperator/Posh-Sysmon
PowerShell module for creating and managing Sysinternals Sysmon config files.
mainframed/Mainframed
Mainframe security auditing and scripts
CrowdStrike/CrowdFMS
CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by leveraging the Private API system. This framework automatically downloads recent samples, which triggered an alert on the users YARA notification feed.
nccgroup/WindowsDACLEnumProject
A collection of tools to enumerate and analyse Windows DACLs
mubix/akb
Attack Knowledge Base
michael-yip/ThreatTracker
ThreatTracker is a Python script designed to monitor and generate alerts on given sets of indicators of compromise (IOCs) indexed by a set of Google Custom Search Engines.
brandonprry/Potato
Windows privilege escalation through NTLM Relay and NBNS Spoofing
rkovar/dns_detection
Detecting DNS Spoofing, DNS Tunneling, DNS Exfiltration
gitunique/cti-scripts
Scripts for accessing and transforming cyber threat intelligence
spohara79/TGT---Golden-Silver-Ticket
Scripts to help hunt for possible golden/silver TGT tickets