pard0p's Stars
icyguider/Shhhloader
Syscall Shellcode Loader (Work in Progress)
OtterHacker/Hooker
Maldev-Academy/ExecutePeFromPngViaLNK
Extract and execute a PE embedded within a PNG file using an LNK file.
tsarpaul/llvm-string-obfuscator
LLVM String Obfuscator
Maldev-Academy/EmbedPayloadInPng
Embed a payload inside a PNG file
rofl0r/microsocks
tiny, portable SOCKS5 server with very moderate resource usage
bluesadi/Pluto
Obfuscator based on LLVM 14.0.6
DosX-dev/obfus.h
Macro-header for compile-time C obfuscation (tcc, win x86/x64)
mlcsec/EDRenum-BOF
Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.
rvrsh3ll/BOF_Collection
Various Cobalt Strike BOFs
passtheticket/CVE-2024-38200
CVE-2024-38200 - Microsoft Office NTLMv2 Disclosure Vulnerability
crvvdev/MasterHide
A x64 Windows Rootkit using SSDT or Hypervisor hook
JohnHammond/recaptcha-phish
Phishing with a fake reCAPTCHA
can1357/hvdetecc
Collection of hypervisor detections
Offensive-Panda/ProcessInjectionTechniques
This comprehensive process injection series is crafted for cybersecurity enthusiasts, researchers, and professionals who aim to stay at the forefront of the field. It serves as a central repository of knowledge, offering in-depth exploration of various process injection techniques used by adversaries.
rasta-mouse/OST-C2-Spec
Open Source C&C Specification
0x6rss/pdfdropper
PDF dropper Red Team Scenairos
Mazars-Tech/AD_Miner
AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security weaknesses
wavestone-cdt/EDRSandblast
fortra/No-Consolation
A BOF that runs unmanaged PEs inline
mrd0x/PWA-Phishing
ricardojoserf/NativeDump
Dump lsass using only Native APIs by hand-crafting Minidump files (without MiniDumpWriteDump!!!)
JanielDary/ImmoralFiber
Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) PhantomThread (An evolved callstack-masking implementation)
0xda568/IconJector
Unorthodox and stealthy way to inject a DLL into the explorer using icons
RedSiege/GraphStrike
Cobalt Strike HTTPS beaconing over Microsoft Graph API
Warrior9912/Hack-the-Box-Walkthroughs
I'm gonna be posting HTB walkthroughs here, take this as my little personal portfolio
czs108/Windows-PE-Packer
🗜️ A packer for Windows x86 executable files written in C and Intel x86 Assembly. The new file after packing can obstruct reverse engineering.
SafeBreach-Labs/PoolParty
A set of fully-undetectable process injection techniques abusing Windows Thread Pools
rafagafe/tiny-json
The tiny-json is a versatile and easy to use json parser in C suitable for embedded systems. It is fast, robust and portable.
nullsection/DLL-Spoofer
POC for a DLL spoofer to determine DLL Hijacking