swzhouu's Stars
swzhouu/BadAssMacros
BadAssMacros - C# based automated Malicous Macro Generator.
swzhouu/BloodHound
Six Degrees of Domain Admin
swzhouu/BloodHound.py
A Python based ingestor for BloodHound
swzhouu/bypass-clm
PowerShell Constrained Language Mode Bypass
swzhouu/Certipy
Tool for Active Directory Certificate Services enumeration and abuse
swzhouu/DC32BadgeGame
DEFCON 32 Badge Game
swzhouu/DEFCON-32-BadgeFirmware
swzhouu/donut
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
swzhouu/DotNetToJScript
A tool to create a JScript file which loads a .NET v2 assembly from memory.
swzhouu/GadgetToJScript
A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.
swzhouu/gMSADumper
Lists who can read any gMSA password blobs and parses them if the current user has access.
swzhouu/hashgrab
generate payloads that force authentication against an attacker machine
swzhouu/HostRecon
This function runs a number of checks on a system to help provide situational awareness to a penetration tester during the reconnaissance phase. It gathers information about the local system, users, and domain information. It does not use any 'net', 'ipconfig', 'whoami', 'netstat', or other system commands to help avoid detection.
swzhouu/impacket
Impacket is a collection of Python classes for working with network protocols.
swzhouu/mimikatz
A little tool to play with Windows security
swzhouu/NtCall64
Windows NT x64 syscall fuzzer
swzhouu/oleviewdotnet
A .net OLE/COM viewer and inspector to merge functionality of OleView and Test Container
swzhouu/onedrive_user_enum
onedrive user enumeration - pentest tool to enumerate valid o365 users
swzhouu/OSEP-Code-Snippets
A repository with my notable code snippets for Offensive Security's PEN-300 (OSEP) course.
swzhouu/PatchlessCLRLoader
.NET assembly loader with patchless AMSI and ETW bypass
swzhouu/PowerSploit
PowerSploit - A PowerShell Post-Exploitation Framework
swzhouu/PPLKiller
Tool to bypass LSA Protection (aka Protected Process Light)
swzhouu/pywhisker
Python version of the C# tool for "Shadow Credentials" attacks
swzhouu/RpcView
RpcView is a free tool to explore and decompile Microsoft RPC interfaces
swzhouu/Rubeus
Trying to tame the three-headed dog.
swzhouu/SharpHound
C# Data Collector for BloodHound
swzhouu/SharpShooter
Payload Generation Framework
swzhouu/SigmaPotato
SeImpersonate privilege escalation tool for Windows 8 - 11 and Windows Server 2012 - 2022 with extensive PowerShell and .NET reflection support.
swzhouu/SyscallTables
Windows NT x64 Syscall tables
swzhouu/winafl
A fork of AFL for fuzzing Windows binaries