technion's Stars
BloodHoundAD/BloodHound
Six Degrees of Domain Admin
screetsec/TheFatRat
Thefatrat a massive exploiting tool : Easy tool to generate backdoor and easy tool to post exploitation attack like browser attack and etc . This tool compiles a malware with popular payload and then the compiled malware can be execute on windows, android, mac . The malware that created with this tool also have an ability to bypass most AV software protection .
Hackplayers/evil-winrm
The ultimate WinRM shell for hacking/pentesting
infosecn1nja/AD-Attack-Defense
Attack and defend active directory using modern post exploitation adversary tradecraft activity
BC-SECURITY/Empire
Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.
odedshimon/BruteShark
Network Analysis Tool
trickster0/OffensiveRust
Rust Weaponization for Red Team Engagements.
olafhartong/sysmon-modular
A repository of sysmon configuration modules
Flangvik/SharpCollection
Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps release pipelines.
sans-blue-team/DeepBlueCLI
SnaffCon/Snaffler
a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
codingo/Reconnoitre
A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.
p0dalirius/Coercer
A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.
mdsecactivebreach/SharpShooter
Payload Generation Framework
ctfs/write-ups-2016
Wiki-like CTF write-ups repository, maintained by the community. 2016
DanMcInerney/icebreaker
Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environment
rastating/wordpress-exploit-framework
A Ruby framework designed to aid in the penetration testing of WordPress systems.
NH-RED-TEAM/RustHound
Active Directory data ingestor for BloodHound Legacy written in Rust. 🦀
OfficeDev/O365-InvestigationTooling
jsardev/reaptcha
Google reCAPTCHA v2 for React
JohnTroony/Blisqy
Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).
evets007/OSCP-Prep-cheatsheet
castle/ruby-u2f
U2F library in Ruby
mikesiegel/ews-crack
lanjelot/albatar
Albatar is a SQLi exploitation framework in Python
Hestat/lw-yara
Yara Ruleset for scanning Linux servers for shells, spamming, phishing and other webserver baddies
n30m1nd/Linux_Heap_Exploitation_Intro_Series
Various PoCs and challenges regarding heap userland exploitation
cazala/donger
npm package to generate dongers ヽ༼ຈل͜ຈ༽ノ
tomjakubowski/fbaas
FizzBuzz as a Service: answer inane interview questions with ease!
clanchun/epipe
Pipe for Erlang