mepher's Stars
hakaioffsec/coffee
A COFF loader made in Rust
nickvourd/CS-Aggressor-Kit
Homemade Aggressor scripts kit for Cobalt Strike
boku7/StringReaper
Reaping treasures from strings in remote processes memory
boku7/patchwerk
BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)
unkn0wn-r1d3r/EvilBurp
Automated Evilginx phishlet creator Extension for Burpsuite
StratumSecurity/ntlm-connector
An implementation of Hyper's Connector trait that can authenticate to proxies using NTLM and works with or without TLS
Maldev-Academy/HellHall
Performing Indirect Clean Syscalls
NtDallas/KrakenMask
Sleep obfuscation
grayhatkiller/SharpExShell
SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.
NtDallas/sharp-execute
Execute dotnet app from unmanaged process
caueb/Mockingjay
Mockingjay process self injection POC
kozmer/aad-bofs
AzureAD beacon object files
Mayyhem/Maestro
Abusing Intune for Lateral Movement over C2
secureworks/pytune
rasta-mouse/process-inject-kit
Port of Cobalt Strike's Process Inject Kit
securifybv/BOFRyptor
C5Hackr/c_syscalls
https://github.com/janoglezcampos/c_syscalls with the ASM rewritten by myself for Visual Studio's Compiler.
MythicAgents/Hannibal
A Mythic Agent written in PIC C.
NtDallas/Svartalfheim
Stage 0
Mr-Un1k0d3r/SCShell
Fileless lateral movement tool that relies on ChangeServiceConfigA to run command
janoglezcampos/llvm-yx-callobfuscator
LLVM plugin to transparently apply stack spoofing and indirect syscalls to Windows x64 native calls at compile time.
UmaRex01/SysWhispers3
SysWhispers on Steroids - AV/EDR evasion via direct system calls.
vi/websocat
Command-line client for WebSockets, like netcat (or curl) for ws:// with advanced socat-like functions
joaoviictorti/rustclr
Host CLR and run .NET binaries using Rust
CorentinJ/Real-Time-Voice-Cloning
Clone a voice in 5 seconds to generate arbitrary speech in real-time
RVC-Project/Retrieval-based-Voice-Conversion-WebUI
Easily train a good VC model with voice data <= 10 mins!
nativefier/nativefier
Make any web page a desktop application
CICADA8-Research/COMThanasia
A set of programs for analyzing common vulnerabilities in COM
Leo4j/Invoke-SMBRemoting
Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement
Ylianst/MeshCentral
A complete web-based remote monitoring and management web site. Once setup you can install agents and perform remote desktop session to devices on the local network or over the Internet.