Pinned Repositories
Generate-Macro
This Powershell script will generate a malicious Microsoft Office document with a specified payload and persistence method.
Invoke-AltDSBackdoor
Invoke-LoginPrompt
Invokes a Windows Security Login Prompt and outputs the clear text password.
MessageBox
PoC dlls for Task Scheduler COM Hijacking
Misc-PowerShell-Stuff
random powershell goodness
OutlookPersistence
Powershell-C2
Powershell-Payload-Excel-Delivery
Uses Invoke-Shellcode to execute a payload and persist on the system.
enigma0x3's Repositories
enigma0x3/Generate-Macro
This Powershell script will generate a malicious Microsoft Office document with a specified payload and persistence method.
enigma0x3/Misc-PowerShell-Stuff
random powershell goodness
enigma0x3/Invoke-LoginPrompt
Invokes a Windows Security Login Prompt and outputs the clear text password.
enigma0x3/Invoke-AltDSBackdoor
enigma0x3/Powershell-Payload-Excel-Delivery
Uses Invoke-Shellcode to execute a payload and persist on the system.
enigma0x3/MessageBox
PoC dlls for Task Scheduler COM Hijacking
enigma0x3/OutlookPersistence
enigma0x3/Powershell-C2
enigma0x3/Old-Powershell-payload-Excel-Delivery
This version touches disk for registry persistence.
enigma0x3/windows-operating-system-archaeology
windows-operating-system-archaeology @Enigma0x3 @subTee
enigma0x3/PenTesting-Scripts
A ton of helpful tools
enigma0x3/PowershellProfile
Abuses Powershell Profiles
enigma0x3/atomic-red-team
Small and highly portable detection tests.
enigma0x3/PowerShell-Suite
My musings with PowerShell
enigma0x3/Empire
Empire is a pure PowerShell post-exploitation agent.
enigma0x3/bugs
enigma0x3/DeviceGuardBypassMitigationRules
A reference Device Guard code integrity policy consisting of FilePublisher deny rules for published Device Guard configuration bypasses
enigma0x3/misc-1
enigma0x3/sandbox-attacksurface-analysis-tools
Set of tools to analyze and attack Windows sandboxes.
enigma0x3/BCD
BCD is a module to interact with boot configuration data (BCD) either locally or remotely using the ROOT/WMI:Bcd* WMI classes. The functionality of the functions in this module mirror that of bcdedit.exe.
enigma0x3/Misc
enigma0x3/oleviewdotnet
A .net OLE/COM viewer and inspector to merge functionality of OleView and Test Container
enigma0x3/delphi-code-coverage
This is a clone of the code coverage tool for Delphi on http://code.google.com/p/delphi-code-coverage/
enigma0x3/windows-itpro-docs
This is used for contributions to the Windows 10 content for IT professionals on docs.microsoft.com.
enigma0x3/blogstuff
enigma0x3/DotNetInteropDemos
A set of demos and a PowerShell module to interact with DotNetInterop.
enigma0x3/impacket
Impacket is a collection of Python classes for working with network protocols.
enigma0x3/OPCDE
OPCDE DXB 2017 Materials