Pinned Repositories
noisy-recon
A simple enumeration script for CTFs / OSCP. Very noisy. Uses nmap, gobuster, nikto and more.
pretext-project.github.io
Open-Source Collection of Social Engineering Pretexts
C2concealer
C2concealer is a command line tool that generates randomized C2 malleable profiles for use in Cobalt Strike.
EXCELntDonut
Excel 4.0 (XLM) Macro Generator for injecting DLLs and EXEs into memory.
joeleonjr's Repositories
joeleonjr/noisy-recon
A simple enumeration script for CTFs / OSCP. Very noisy. Uses nmap, gobuster, nikto and more.
joeleonjr/API-Security-Checklist
Checklist of the most important security countermeasures when designing, testing, and releasing your API
joeleonjr/b2xtranslator
.NET Core library to convert Microsoft Office binary files (doc, xls and ppt) to Open XML (docx, xlsx and pptx).
joeleonjr/BOFs
Collection of Beacon Object Files
joeleonjr/calc_security_poc
A sample of proof of concept scripts that run Calc.exe with full source code.
joeleonjr/canary_test
joeleonjr/CLRvoyance
Managed assembly shellcode generation
joeleonjr/Fetters
Port of Seatbelt in F#
joeleonjr/FSharp-Shellcode
F# Implementation to spawn shellcode
joeleonjr/GadgetToJScript
A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.
joeleonjr/GhostLoader
GhostLoader - AppDomainManager - Injection - 攻壳机动队
joeleonjr/http-garden
Differential testing and fuzzing of HTTP servers and proxies
joeleonjr/kali_setup
Simple bash script to load useful tools / settings into a new Kali Linux box.
joeleonjr/kiterunner
Contextual Content Discovery Tool
joeleonjr/MaliciousMacroMSBuild
Generates Malicious Macro and Execute Powershell or Shellcode via MSBuild Application Whitelisting Bypass.
joeleonjr/Markdown-XSS-Payloads
XSS payloads for exploiting Markdown syntax
joeleonjr/NamedPipePTH
Pass the Hash to a named pipe for token Impersonation
joeleonjr/newtool
joeleonjr/SharpSQLDump
内网渗透中快速获取数据库所有库名,表名,列名。具体判断后再去翻数据,节省时间。适用于mysql,mssql。
joeleonjr/SharPyShell
SharPyShell - tiny and obfuscated ASP.NET webshell for C# web applications
joeleonjr/Shr3dKit
Red Team Tool Kit
joeleonjr/test
joeleonjr/test2
joeleonjr/trigen
Trigen is a Python script which uses different combinations of Win32 function calls in generated VBA to execute shellcode.
joeleonjr/unwebpack-sourcemap
Extract uncompiled, uncompressed SPA code from Webpack source maps.
joeleonjr/Veil
Veil 3.1.X (Check version info in Veil at runtime)
joeleonjr/xxe-injection-payload-list
🎯 XML External Entity (XXE) Injection Payload List