Pinned Repositories
AggressorScripts
Aggressor scripts for use with Cobalt Strike 3.0+
AggressorScripts-harleyQu1nn
Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources
AlternativeShellcodeExec
Alternative Shellcode Execution Via Callbacks
Amsi-Bypass-Powershell
This repo contains some Amsi Bypass methods i found on different Blog Posts.
arsenal
Arsenal is just a quick inventory and launcher for hacking programs
awesome-ctf
forked from https://github.com/apsdehal/awesome-ctf.git
Awesome-Fuzzing
A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on ) for learning Fuzzing and initial phases of Exploit Development like root cause analysis.
Bad-Pdf
Steal Net-NTLM Hash using Bad-PDF
sqlmap-tamper-slashescape
A sqlmap tamper script to escape an encoded char string
Wi-Fun101
Wifi Workshop on the Basics
matt-moses's Repositories
matt-moses/Wi-Fun101
Wifi Workshop on the Basics
matt-moses/Amsi-Bypass-Powershell
This repo contains some Amsi Bypass methods i found on different Blog Posts.
matt-moses/byoctf_discord
matt-moses/CTFd
CTFs as you need them
matt-moses/Dirty-Vanity
A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vanity-a-new-approach-to-code-injection--edr-bypass-28417
matt-moses/Ghostwriter
The SpecterOps project management and reporting engine
matt-moses/juice-shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
matt-moses/kerberoast
matt-moses/KerbTestApp
matt-moses/keyhacks
Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
matt-moses/liamg
GitHub profile (auto-updated every 4 hours)
matt-moses/LOLBAS
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
matt-moses/mattm.dev
matt-moses/mfkey32v2
Mifare Classic Key Calculator v2
matt-moses/mona
Corelan Repository for mona.py
matt-moses/MS17-010_CVE-2017-0143
matt-moses/nicknames
A CSV file with US given names (first name) and their associated nicknames or diminutive names.
matt-moses/noseyparker
Nosey Parker is a command-line program that finds secrets and sensitive information in textual data and Git history.
matt-moses/NtlmThief
Extracting NetNTLM without touching lsass.exe
matt-moses/PetitPotato
Local privilege escalation via PetitPotam (perfectly on Windows 21H2 10.0.20348.1547)
matt-moses/pwning-juice-shop
Antora/Asciidoc content for Bjoern Kimminich's free eBook "Pwning OWASP Juice Shop"
matt-moses/PythonShellcode
matt-moses/PythonShellcodeRedux
matt-moses/random_c2_profile
Cobalt Strike random C2 Profile generator
matt-moses/SharpConflux
matt-moses/Shoggoth
Shoggoth: Asmjit Based Polymorphic Encryptor
matt-moses/uru
matt-moses/vapi
vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.
matt-moses/WebFlasher
O.MG Cable and Plug flashing tool designed to allow easy flashing on WebSerial/WebUSB compatible browsers
matt-moses/wifi-on-debian-initramfs
A bunch of necessary script for enabling Wifi in initramfs