binaryAccess's Stars
fastfire/deepdarkCTI
Collection of Cyber Threat Intelligence sources from the deep and dark web
gtworek/PSBits
Simple (relatively) things allowing you to dig a bit deeper than usual.
ly4k/Certipy
Tool for Active Directory Certificate Services enumeration and abuse
PhrozenIO/PowerRemoteDesktop
Remote Desktop entirely coded in PowerShell.
frankwxu/digital-forensics-lab
Free hands-on digital forensics labs for students and faculty
Dec0ne/KrbRelayUp
KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).
rootsecdev/Azure-Red-Team
Azure Security Resources and Notes
Yaxser/Backstab
A tool to kill antimalware protected processes
Ch0pin/AVIator
Antivirus evasion project
mgeeky/cobalt-arsenal
My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+
dafthack/MSOLSpray
A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a tenant doesn't exist, if a user doesn't exist, if the account is locked, or if the account is disabled.
CCob/BeaconEye
Hunts out CobaltStrike beacons and logs operator command output
p0dalirius/LDAPmonitor
Monitor creation, deletion and changes to LDAP objects live during your pentest or system administration!
thefLink/Hunt-Sleeping-Beacons
Aims to identify sleeping beacons
BloodHoundAD/BARK
BloodHound Attack Research Kit
h4wkst3r/InvisibilityCloak
Proof-of-concept obfuscation toolkit for C# post-exploitation tools
zeronetworks/rpcfirewall
ANSSI-FR/ADTimeline
Timeline of Active Directory changes with replication metadata
nodauf/GoMapEnum
User enumeration and password bruteforce on Azure, ADFS, OWA, O365, Teams and gather emails on Linkedin
Diverto/nse-log4shell
Nmap NSE scripts to check against log4shell or LogJam vulnerabilities (CVE-2021-44228)
zeroperil/HookDump
Security product hook detection
airbus-cert/Invoke-Bof
Load any Beacon Object File using Powershell!
passthehashbrowns/hiding-your-syscalls
Some source code to demonstrate avoiding certain direct syscall detections by locating and JMPing to a legitimate syscall instruction within NTDLL.
GetRektBoy724/BetterXencrypt
A better version of Xencrypt.Xencrypt it self is a Powershell runtime crypter designed to evade AVs.
BinaryDefense/log4j-honeypot-flask
Internal network honeypot for detecting if an attacker or insider threat scans your network for log4j CVE-2021-44228
MartinIngesen/TokenStomp
C# implementation of the token privilege removal flaw discovered by @GabrielLandau/Elastic
Imanfeng/Telemetry
ABUSING WINDOWS TELEMETRY FOR PERSISTENCE
o1mate/AppLocker-Bypass
Bypassing AppLocker with C#
iomoath/SharpSpray
Active Directory password spraying tool. Auto fetches user list and avoids potential lockouts.
ORCA666/artifact64
THIS REPO IS PART OF WHAT ORCA TOLD ME TO UPLOAD