Highlights
Stars
SourcePoint is a C2 profile generator for Cobalt Strike command and control servers designed to ensure evasion.
Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.
A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.
ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries ever having to touch storage. This is useful for red-teamin…
Just another C2 Redirector using CloudFlare. Support multiple C2 and multiple domains. Support for websocket listener.
almounah / go-buena-clr
Forked from Ne0nd0g/go-clrGood CLR Host with Native patchless AMSI Bypass
A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office365 users.
Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999
Elastic Security detection content for Endpoint
YARA signature and IOC database for my scanners and tools
Combining Sealighter with unpatched exploits to run the Threat-Intelligence ETW Provider
An even funnier way to disable windows defender. (through WSC api)
xforcered / RemoteMonologue
Forked from 3lp4tr0n/RemoteMonologueWeaponizing DCOM for NTLM Authentication Coercions
RealKeyboardWarrior / zoomer
Forked from chris124567/zoomerChat bots (& more) for Zoom by figuring out their websocket protocol
Collection of awesome LLM apps with AI Agents and RAG using OpenAI, Anthropic, Gemini and opensource models.
Shadow Dumper is a powerful tool used to dump LSASS memory, often needed in penetration testing and red teaming. It uses multiple advanced techniques to dump memory, allowing to access sensitive da…
Discover related domains using Whois data from whoxy.com
An attempt to answer the age old interview question "What happens when you type google.com into your browser and press enter?"
A crappy hook on SpAcceptLsaModeContext that prints incoming auth attempts. WIP
Fancy stream processing made operationally mundane
A next-generation crawling and spidering framework.
Standalone utility for service discovery on open ports!