wsummerhill's Stars
google/magika
Detect file content types with deep learning
mandiant/flare-floss
FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.
Pennyw0rth/NetExec
The Network Execution Tool
Azure/PyRIT
The Python Risk Identification Tool for generative AI (PyRIT) is an open access automation framework to empower security professionals and machine learning engineers to proactively find risks in their generative AI systems.
icyguider/Shhhloader
Syscall Shellcode Loader (Work in Progress)
mgeeky/ThreadStackSpoofer
Thread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's memory allocation from scanners and analysts.
Cracked5pider/Stardust
A modern 64-bit position independent implant template
Meckazin/ChromeKatz
Dump cookies and credentials directly from Chrome/Edge process memory
jthuraisamy/TelemetrySourcerer
Enumerate and disable common sources of telemetry used by AV/EDR.
mandiant/SilkETW
RedTeamOperations/Advanced-Process-Injection-Workshop
subat0mik/Misconfiguration-Manager
Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening guidance.
praetorian-inc/PortBender
TCP Port Redirection Utility
ShutdownRepo/pywhisker
Python version of the C# tool for "Shadow Credentials" attacks
An0nUD4Y/Evilginx2-Phishlets
Evilginx3 Phishlets version (0.2.3 & above) Only For Testing/Learning Purposes
Xre0uS/MultiDump
MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.
ricardojoserf/NativeDump
Dump lsass using only Native APIs by hand-crafting Minidump files (without MinidumpWriteDump!!!)
JoelGMSec/Invoke-Stealth
Simple & Powerful PowerShell Script Obfuscator
wh0amitz/SharpADWS
Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).
iilegacyyii/ThreadlessInject-BOF
BOF implementation of @_EthicalChaos_'s ThreadlessInject project. A novel process injection technique with no thread creation, released at BSides Cymru 2023.
jsa2/caOptics
CA Optics - Azure AD Conditional Access Gap Analyzer
nickvourd/COM-Hunter
COM Hijacking VOODOO
PShlyundin/ldap_shell
AD ACL abuse
Krook9d/PurpleLab
PurpleLab is an efficient and readily deployable lab solution, providing a swift setup for cybersecurity professionals to test detection rules, simulate logs, and undertake various security tasks, all accessible through a user-friendly web interface
CyberCX-STA/PurpleOps
An open-source self-hosted purple team management web application.
mandiant/ccmpwn
EvilGreys/Cobalt-Strike-Profiles-for-EDR-Evasion
Cobalt Strike Profiles for EDR Evasion
ZERODETECTION/MSC_Dropper
sadreck/Codecepticon
.NET/PowerShell/VBA Offensive Security Obfuscator
synacktiv/AADOutsider-py
Python3 rewrite of AsOutsider features of AADInternals