br-sn's Stars
projectdiscovery/nuclei-templates
Community curated list of templates for the nuclei engine to find security vulnerabilities.
itm4n/PrivescCheck
Privilege Escalation Enumeration Script for Windows
jonaslejon/malicious-pdf
💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh
aahmad097/AlternativeShellcodeExec
Alternative Shellcode Execution Via Callbacks
Mr-Un1k0d3r/SCShell
Fileless lateral movement tool that relies on ChangeServiceConfigA to run command
Yaxser/Backstab
A tool to kill antimalware protected processes
random-robbie/bruteforce-lists
Some files for bruteforcing certain things.
ayoubfathi/leaky-paths
A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to scan passively for high-quality endpoints and quick-wins.
Aetsu/OffensivePipeline
OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team exercises.
ly4k/SpoolFool
Exploit for CVE-2022-21999 - Windows Print Spooler Elevation of Privilege Vulnerability (LPE)
NUL0x4C/AtomLdr
A DLL loader with advanced evasive features
nccgroup/nccfsas
Information released publicly by NCC Group's Full Spectrum Attack Simulation (FSAS) team.
rvrsh3ll/BOF_Collection
Various Cobalt Strike BOFs
RedSiege/EXCELntDonut
Excel 4.0 (XLM) Macro Generator for injecting DLLs and EXEs into memory.
antonioCoco/Mapping-Injection
Just another Windows Process Injection
optiv/Dent
A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.
karttoon/trigen
Trigen is a Python script which uses different combinations of Win32 function calls in generated VBA to execute shellcode.
CCob/SylantStrike
Simple EDR implementation to demonstrate bypass
FULLSHADE/OSCE
Collection of Windows usermode exploits targeting various third-party software applications, these exploits were written in preparation for the Offsec CTP/OSCE certification
REW-sploit/REW-sploit
Emulate and Dissect MSF and *other* attacks
yardenshafir/CVE-2020-1034
PoC demonstrating the use of cve-2020-1034 for privilege escalation
mrd0x/pe2shc-to-cdb
Convert shellcode generated using pe_2_shellcode to cdb format.
badBounty/directInjectorPOC
Small POC written in C# that performs shellcode injection on x64 processes using direct syscalls as a way to bypass user-land EDR hooks.
vivami/OutlookParasite
Outlook persistence using VSTO add-ins
catching-transparent-phish/phoca
Tool to analyze and detect MITM phishing toolkits on the web.
csandker/RPCDump
EspressoCake/Process_Protection_Level_BOF
dirtyfilthy/siem-from-scratch
SIEM-From-Scratch is a drop-in ELK based SIEM component for your Vagrant infosec lab
kasif-dekel/OSR_DeviceTree_Vuln
listinvest/undonut
Unpacker for donut shellcode