Pinned Repositories
atomic-red-team
Small and highly portable detection tests based on MITRE's ATT&CK.
AttackEmulationTools
CookieCrimesJS
A cross-platform one-liner to steal a user's cookies from Chrome <- cool
DPAT
Domain Password Audit Tool for Pentesters
GatherContacts
A Burp Suite Extension to pull Employee Names from Google and Bing LinkedIn Search Results
invoke-atomicredteam
PowerShellForInfoSec
PS4I-AIcoding
PurpleTeaming
Files to support the AntiSyphon PurpleTeaming class
SlackExtract
A PowerShell script to download all files, messages and user profiles that a user has access to in slack.
clr2of8's Repositories
clr2of8/CookieCrimesJS
A cross-platform one-liner to steal a user's cookies from Chrome <- cool
clr2of8/VBAstomp
A repository of example VBA stomped documents
clr2of8/G-chimp
An automated way to send phishing emails from Google/G-suite.
clr2of8/DeployREMnux
DeployREMnux is a Python script that will deploy a cloud instance of the public REMnux distribution in the Amazon cloud (AWS).
clr2of8/Presentations
Slides from Security Conferences Presentations
clr2of8/ChromeShot
Capture web screenshots using Chrome. No other dependencies required. Works cross platform.
clr2of8/YaraRules
A collection of yara rules for detection of malicious content
clr2of8/SCShell
Fileless lateral movement tool that relies on ChangeServiceConfigA to run command
clr2of8/adb
Adaptive Document Builder
clr2of8/adidnsdump
Active Directory Integrated DNS dumping by any authenticated user
clr2of8/AtomicRedteam
clr2of8/evil-winrm
The ultimate WinRM shell for hacking/pentesting
clr2of8/Invoke-SocksProxy
Socks proxy server using powershell. Supports local and reverse connections for pivoting.
clr2of8/Kavod.Vba.Compression
Implementation of the compression algorithm used in VBA projects within MS Office applications in C#
clr2of8/lsassy
Extract credentials from lsass remotely
clr2of8/RdpThief
Extracting Clear Text Passwords from mstsc.exe using API Hooking.
clr2of8/SharpGen
SharpGen is a .NET Core console application that utilizes the Rosyln C# compiler to quickly cross-compile .NET Framework console applications or libraries.
clr2of8/about
clr2of8/AMSI_Ordinal_Bypass
Bypass AMSI and Defender using Ordinal Values
clr2of8/Disable-Windows-Defender
Changing values to bypass windows defender C#
clr2of8/Empire
Empire is a PowerShell and Python post-exploitation agent.
clr2of8/Invoke-TmpDavFS
Memory Backed Powershell WebDav Server
clr2of8/Lime-Crypter
Simple obfuscation tool
clr2of8/Lime-Downloader
Simple Malware Downloader
clr2of8/Mass-RAT
Basic Multiplatform Remote Administration Tool - Xamarin
clr2of8/openmcdf
Microsoft Compound File .net component - pure C# - NET Standard 2.0
clr2of8/pcode2code
a vba pcode decompiler based on pcodedmp
clr2of8/recon
clr2of8/Rubeus
Trying to tame the three-headed dog.
clr2of8/UltimateAppLockerByPassList
The goal of this repository is to document the most common techniques to bypass AppLocker.