fgsec's Stars
L-codes/Neo-reGeorg
Neo-reGeorg is a project that seeks to aggressively refactor reGeorg
basil00/WinDivert
WinDivert: Windows Packet Divert
med0x2e/SigFlip
SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.
nop-tech/OSED
Containing my notes, practice binaries + solutions, blog posts, etc. for the Offensive Security Exploit Developer (OSED/EXP-301)
fortra/No-Consolation
A BOF that runs unmanaged PEs inline
thefLink/Hunt-Sleeping-Beacons
Aims to identify sleeping beacons
epi052/osed-scripts
bespoke tooling for offensive security's Windows Usermode Exploit Dev course (OSED)
wh0amitz/SharpADWS
Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).
0xEr3bus/PoolPartyBof
A beacon object file implementation of PoolParty Process Injection Technique.
klezVirus/DriverJack
Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths
Mr-Un1k0d3r/.NetConfigLoader
.net config loader
hakaioffsec/CVE-2024-21338
Local Privilege Escalation from Admin to Kernel vulnerability on Windows 10 and Windows 11 operating systems with HVCI enabled.
securifybv/Visual-Studio-BOF-template
A Visual Studio template used to create Cobalt Strike BOFs
jacob-baines/concealed_position
Bring your own print driver privilege escalation tool
hasherezade/thread_namecalling
Process Injection using Thread Name
pbatard/uefi-simple
UEFI development made easy
jsecurity101/TelemetrySource
rasta-mouse/OST-C2-Spec
Open Source C&C Specification
thefLink/C-To-Shellcode-Examples
ipSlav/DirtyCLR
An App Domain Manager Injection DLL PoC on steroids
CCob/DGPOEdit
Disconnected GPO Editor - A Group Policy Manager launcher to allow editing of domain GPOs from non-domain joined machines
vxCrypt0r/AMSI_VEH
A Powershell AMSI Bypass technique via Vectored Exception Handler (VEH). This technique does not perform assembly instruction patching, function hooking or Import Address Table (IAT) modification.
SpecterOps/cred1py
A Python POC for CRED1 over SOCKS5
decoder-it/NetworkServiceExploit
POC for NetworkService PrivEsc
klezVirus/RpcProxyInvoke
Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar
wotwot563/aad_prt_bof
namazso/dll-universal-patcher
A universal binary patching dll.
SpiralBL0CK/CVE-2024-40431-CVE-2022-25479-EOP-CHAIN
CVE-2024-40431+CVE-2022-25479 chain for EOP(DATA ONLY ATTACK)
jdu2600/Get-InjectedThreadEx
Fork of Get-InjectedThread - https://gist.github.com/jaredcatkinson/23905d34537ce4b5b1818c3e6405c1d2
klezVirus/LdrLibraryEx
A small x64 library to load dll's into memory.