Pinned Repositories
APCLdr
Payload Loader With Evasion Features
attify-badge-tool
Hardware Security Research and Serial Communication tool (to be used with Attify Badge)
binwalk
Firmware Analysis Tool
blackmagic
In application debugger for ARM Cortex microcontrollers.
Bus_Pirate
Community driven firmware and hardware for Bus Pirate version 3 and 4
C2concealer
C2concealer is a command line tool that generates randomized C2 malleable profiles for use in Cobalt Strike.
Certipy
Tool for Active Directory Certificate Services enumeration and abuse
ChatGPT_DAN
ChatGPT DAN, Jailbreaks prompt
Reaper
Reaper is a comprehensive OSINT tool desinged to scrape linkedin, perform additioanl user and domain enumeration, then perform google and github dorking for related code repositories.
smbMailBomb
A command line utility to test for SMB Forced Authentication
apt4hax's Repositories
apt4hax/Reaper
Reaper is a comprehensive OSINT tool desinged to scrape linkedin, perform additioanl user and domain enumeration, then perform google and github dorking for related code repositories.
apt4hax/binwalk
Firmware Analysis Tool
apt4hax/blackmagic
In application debugger for ARM Cortex microcontrollers.
apt4hax/Bus_Pirate
Community driven firmware and hardware for Bus Pirate version 3 and 4
apt4hax/ChatGPT_DAN
ChatGPT DAN, Jailbreaks prompt
apt4hax/Coercer
A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.
apt4hax/CredMaster
Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling
apt4hax/CVE-2022-24715
Authenticated Remote Code Execution in Icinga Web 2 <2.8.6, <2.9.6, <2.10
apt4hax/CVE-2023-32233
CVE-2023-32233: Linux内核中的安全漏洞
apt4hax/CVE-2024-3656
Keycloak admin API allows low privilege users to use administrative functions
apt4hax/deoptimizer
Machine code de-optimizer.
apt4hax/disable-flutter-tls-verification
A Frida script that disables Flutter's TLS verification
apt4hax/EvilPhish
EvilPhish is a tool designed for phishing assessments to test the security awareness of individuals and organizations. It provides a framework for serving a phishing domain and harvesting user credentials.
apt4hax/HellHall
Performing Indirect Clean Syscalls
apt4hax/hi_my_name_is_keyboard
apt4hax/impacket-driverquery
A modified version of wmiquery.py used for remote driver enumeration via WMI
apt4hax/llama
Inference code for LLaMA models
apt4hax/malleable-c2
Cobalt Strike Malleable C2 Design and Reference Guide
apt4hax/mass-effect
A tool that uses Masscan to identify open ports I have exploits for.
apt4hax/mavs
Mobile Application Vulnerability Scanner
apt4hax/OSCP-Tricks-2023
OSCP 2023 Preparation Guide | Courses, Tricks, Tutorials, Exercises, Machines
apt4hax/PKI-Escalate
Quick and dirty PowerShell script to abuse the overly permissive capabilities of the SYSTEM user in a child domain on the Public Key Services and Enrollment Services ADCS containers to obtain Enterprise Administrator from Domain Administrator. Works by enabling a user to perform ESC1 (Enrolee supplying the SAN).
apt4hax/Privesc
Windows batch script that finds misconfiguration issues which can lead to privilege escalation.
apt4hax/RepoReaper
apt4hax/Scoop
A command-line installer for Windows.
apt4hax/TeamsPhisher
Send phishing messages and attachments to Microsoft Teams users
apt4hax/Terminator
Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes
apt4hax/uber-apk-signer
A cli tool that helps signing and zip aligning single or multiple Android application packages (APKs) with either debug or provided release certificates. It supports v1, v2 and v3 Android signing scheme has an embedded debug keystore and auto verifies after signing.
apt4hax/ubertooth
Software, firmware, and hardware designs for Ubertooth
apt4hax/zippy
A 'trainer' agent which is great for showing customers a nice fake 'ransom' screen. Requires target machine to have head - since support for OpenGL 2.1 is currently required by Godot.