panagioto's Stars
subat0mik/Misconfiguration-Manager
Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening guidance.
nicocha30/ligolo-ng
An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.
breakpointHQ/TCC-ClickJacking
A proof of concept for a clickjacking attack on macOS.
maluramichael/dll-proxy-generator
Creates a proxy dll which sits between the game and original dll
login-securite/DonPAPI
Dumping DPAPI credz remotely
RalfHacker/Kerbeus-BOF
BOF for Kerberos abuse (an implementation of some important features of the Rubeus).
Mr-Un1k0d3r/Cookie-and-Handle-Stealer
C or BOF file to extract WebKit master key to decrypt user cookie
pathtofile/SealighterTI
Combining Sealighter with unpatched exploits to run the Threat-Intelligence ETW Provider
fin3ss3g0d/cypherhound
Python3 terminal application that contains 405 Neo4j cyphers for BloodHound data sets and 388 GUI cyphers
WKL-Sec/dcomhijack
Lateral Movement Using DCOM and DLL Hijacking
lsecqt/OffensiveCpp
This repo contains C/C++ snippets that can be handy in specific offensive scenarios.
RCStep/CSSG
Cobalt Strike Shellcode Generator
wavvs/nanorobeus
COFF file (BOF) for managing Kerberos tickets.
ZeroMemoryEx/Terminator
Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes
ihebski/DefaultCreds-cheat-sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
ZeroMemoryEx/Blackout
kill anti-malware protected processes ( BYOVD) ( Microsoft Won)
Octoberfest7/Inline-Execute-PE
Execute unmanaged Windows executables in CobaltStrike Beacons
evilsocket/jscythe
Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.
chvancooten/maldev-for-dummies
A workshop about Malware Development
iknowjason/PurpleCloud
A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-183b7df7a2f4
0xZDH/BridgeKeeper
Scrape, Hunt, and Transform names and usernames
christophetd/IPv6teal
:wave: Stealthy data exfiltration via IPv6 covert channel
D00MFist/PersistentJXA
Collection of macOS persistence methods and miscellaneous tools in JXA
rust-lang/mdBook
Create book from markdown files. Like Gitbook but implemented in Rust
nop-tech/OSED
Containing my notes, practice binaries + solutions, blog posts, etc. for the Offensive Security Exploit Developer (OSED/EXP-301)
c3c/ADExplorerSnapshot.py
ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound, and also supports full-object dumping to NDJSON.
Crypt0s/DelegationBOF
chvancooten/CloudLabsAD
Terraform + Ansible deployment scripts for an Active Directory lab environment.
anthemtotheego/CredBandit
Proof of concept Beacon Object File (BOF) that uses static x64 syscalls to perform a complete in memory dump of a process and send that back through your already existing Beacon communication channel
connormcgarr/tgtdelegation
tgtdelegation is a Beacon Object File (BOF) to obtain a usable TGT via the "TGT delegation trick"