dan-osul's Stars
beefproject/beef
The Browser Exploitation Framework Project
dxa4481/gcploit
These are tools we released with our 2020 defcon/blackhat talk https://www.youtube.com/watch?v=Ml09R38jpok
Sh3lldon/FullBypass
A tool which bypasses AMSI (AntiMalware Scan Interface) and PowerShell CLM (Constrained Language Mode) and gives you a FullLanguage PowerShell reverse shell.
rod-trent/Copilot-for-Security
My personal work with Copilot for Security
rod-trent/Sentinel-SOC-101
Content and collateral for the Microsoft Sentinel SOC 101 series
undergroundwires/privacy.sexy
Open-source tool to enforce privacy & security best-practices on Windows, macOS and Linux, because privacy is sexy
DesktopECHO/T95-H616-Malware
"Pre-Owned" malware in ROM for AllWinner H616/H618 & RockChip RK3328 Android TV Boxes
rapid7/metasploit-framework
Metasploit Framework
mandiant/capa
The FLARE team's open-source tool to identify capabilities in executable files.
ufrisk/MemProcFS
MemProcFS
devanshbatham/Vulnerabilities-Unmasked
This repo tries to explain complex security vulnerabilities in simple terms that even a five-year-old can understand!
mvelazc0/BadZure
BadZure orchestrates the setup of Azure AD tenants, populating them with diverse entities while also introducing common security misconfigurations to create vulnerable tenants with multiple attack paths.
dr4k0nia/NixImports
A .NET malware loader, using API-Hashing to evade static analysis
myrtus0x0/smoke_conf_extract
Octoberfest7/TeamsPhisher
Send phishing messages and attachments to Microsoft Teams users
tabs-not-spaces/Az.MsiGraphPermissions
Graph Permissions in a managed identity? In this eoconomy????
Cloud-Architekt/AzurePrivilegedIAM
Docs and samples for privileged identity and access management in Microsoft Azure and Microsoft Entra.
GhostPack/Rubeus
Trying to tame the three-headed dog.
repnz/etw-providers-docs
Document ETW providers
everdox/InfinityHook
Hook system calls, context switches, page faults and more.
bats3c/Ghost-In-The-Logs
Evade sysmon and windows event logging
microsoft/windows-rs
Rust for Windows
LearningKijo/KQL
Threat Hunting query in Microsoft 365 Defender, XDR. Provide out-of-the-box KQL hunting queries - App, Email, Identity and Endpoint.
dafthack/MFASweep
A tool for checking if MFA is enabled on multiple Microsoft Services
safebuffer/vulnerable-AD
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
ZeroMemoryEx/Tokenizer
Kernel Mode Driver for Elevating Process Privileges
cisagov/untitledgoosetool
Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to run a full investigation against a customer’s Azure Active Directory (AzureAD), Azure, and M365 environments.
Twigonometry/OSCP-Notes-Template
A template Obsidian Vault for storing your OSCP revision notes
embee-research/CyberChef
csandker/Azure-AccessPermissions