g0h4n's Stars
vxunderground/MalwareSourceCode
Collection of malware source code for a variety of platforms in an array of different programming languages.
ihebski/DefaultCreds-cheat-sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
its-a-feature/Mythic
A collaborative, multi-platform, red teaming framework
Pennyw0rth/NetExec
The Network Execution Tool
patrickfav/uber-apk-signer
A cli tool that helps signing and zip aligning single or multiple Android application packages (APKs) with either debug or provided release certificates. It supports v1, v2 and v3 Android signing scheme has an embedded debug keystore and auto verifies after signing.
chvancooten/maldev-for-dummies
A workshop about Malware Development
evilsocket/legba
A multiprotocol credentials bruteforcer / password sprayer and enumerator. 🥷
Mazars-Tech/AD_Miner
AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security weaknesses
Arvanaghi/CheckPlease
Sandbox evasion modules written in PowerShell, Python, Go, Ruby, C, C#, Perl, and Rust.
jasperan/whatsapp-osint
WhatsApp spy - logs online/offline events from ANYONE in the world
CCob/ThreadlessInject
Threadless Process Injection using remote function hooking.
D00Movenok/BounceBack
↕️🤫 Stealth redirector for your red team operation security
magoo/redteam-plan
Issues to consider when planning a red team exercise.
Dec0ne/DavRelayUp
DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the default settings).
Edr4/XSS-Bypass-Filters
antonioCoco/SspiUacBypass
Bypassing UAC with SSPI Datagram Contexts
stealthsploit/OneRuleToRuleThemStill
A revamped and updated version of my original OneRuleToRuleThemAll hashcat rule
leesh3288/CVE-2023-4911
PoC for CVE-2023-4911
b23r0/rsocx
A bind/reverse Socks5 proxy server.
devanshbatham/headerpwn
A fuzzer for finding anomalies and analyzing how servers respond to different HTTP headers
MythicAgents/thanatos
Mythic C2 agent targeting Linux and Windows hosts written in Rust
BlackSnufkin/NovaLdr
Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)
JPG0mez/ADCSync
Use ESC1 to perform a makeshift DCSync and dump hashes
ardaku/whoami
Rust crate to get the current user and environment.
janoglezcampos/rust_syscalls
Single stub direct and indirect syscalling with runtime SSN resolving for windows.
SaadAhla/DocPlz
Documents Exfiltration project for fun and educational purposes
Nero22k/cve-2023-29360
Exploit for CVE-2023-29360 targeting MSKSSRV.SYS driver
LuemmelSec/PwnDoc-Vulns
sensepost/birp
Big Iron Recon & Pwnage
ayoul3/cicspwn
CICSpwn is a tool to pentest a CICS Transaction servers on z/OS.