-
FindReusedKeyCredentials Public
Forked from TheManticoreProject/FindReusedKeyCredentialsA cross-platform tool to find reused key credentials on multiple objects in Active Directory.
Go MIT License UpdatedNov 18, 2025 -
SAMDump Public
Forked from ricardojoserf/SAMDumpExtract SAM and SYSTEM using Volume Shadow Copy (VSS) API. With multiple exfiltration options and XOR obfuscation
C++ UpdatedNov 15, 2025 -
cross-file-obfuscator Public
Forked from masterqiu01/cross-file-obfuscatorGo 代码混淆工具,使用 AST (抽象语法树) 技术实现跨文件的代码混淆,同时保证混淆后的代码可编译和可执行。
Go MIT License UpdatedOct 27, 2025 -
CVE-2025-59287 Public
Forked from jiansiting/CVE-2025-59287WSUS Unauthenticated RCE
Python UpdatedOct 25, 2025 -
-
AntiDebug_Breaker Public
Forked from 0xsdeo/AntiDebug_Breaker反调试破除者--AntiDebug_Breaker
JavaScript UpdatedOct 21, 2025 -
CVE-2025-49844 Public
Forked from Yuri08loveElaina/CVE-2025-49844A powerful Redis exploitation tool that leverages CVE-2025-4984
Python MIT License UpdatedOct 10, 2025 -
Webpack_extract Public
Forked from xz-zone/Webpack_extractHengge team develops JavaScript specifically for loading Webpack for batch reading
HTML UpdatedSep 16, 2025 -
WSASS Public
Forked from TwoSevenOneT/WSASSThis is the tool to dump the LSASS process on modern Windows 11
C++ UpdatedSep 15, 2025 -
CreateProcessAsPPL Public
Forked from TwoSevenOneT/CreateProcessAsPPLThis is the loader that supports running a program with Protected Process Light (PPL) protection functionality.
C++ UpdatedSep 15, 2025 -
-
AdaptixC2 Public
Forked from Adaptix-Framework/AdaptixC2C GNU General Public License v3.0 UpdatedSep 8, 2025 -
GoPhantom Public
Forked from watanabe-hsad/GoPhantomGoPhantom 是一个为红队演练和安全研究设计的下一代荷载加载器(Payload Loader)生成器。它利用 Go 语言的强大功能,将原始的 Shellcode 和一个诱饵文件打包成一个独立的、具有较强免杀(AV-Evasion)能力的 Windows 可执行文件。
Go MIT License UpdatedSep 5, 2025 -
findsomething_plus Public
Forked from TFour123/findsomething_plus添加识别与检测异步js逻辑
JavaScript GNU General Public License v3.0 UpdatedAug 26, 2025 -
NTR_loader Public
Forked from miunasu/NTR_loaderLoader Pre-Technology, Main thread hijacking without using API, get ntdll and kernel32 handle without peb. 加载器前置技术,不使用API进行主线程劫持,不使用PEB获取ntdll和kernel32的地址。
C MIT License UpdatedJul 18, 2025 -
remoteKrbRelayx Public
Forked from OleFredrik1/remoteKrbRelayxA tool for coercing and relaying Kerberos authentication over DCOM and RPC.
Python Other UpdatedJul 17, 2025 -
GateSentinel Public
Forked from kyxiaxiang/GateSentinelGateSentinel 是一个现代化的 C2 (Command and Control) 框架,专为安全研究和渗透测试设计。该项目采用 Go 语言开发服务端,C 语言开发客户端,提供了强大的远程控制和管理功能。
JavaScript Other UpdatedJul 17, 2025 -
ShellcodeLoader2025 Public
Forked from LilDean17/ShellcodeLoader20252025最新开发的ShellcodeLoader框架,用于AV检测策略分析的模块化 Shellcode 加载器框架,具备非常强大的静态混淆功能。
C++ MIT License UpdatedJul 3, 2025 -
-
ZeroCrumb Public
Forked from dk0m/ZeroCrumbDumping App Bound Protected Credentials & Cookies Without Privileges.
C++ MIT License UpdatedMay 28, 2025 -
DEFCON-31-Syscalls-Workshop Public
Forked from VirtualAlllocEx/DEFCON-31-Syscalls-WorkshopContains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".
C UpdatedMay 23, 2025 -
-
bloodyAD Public
Forked from CravateRouge/bloodyADBloodyAD is an Active Directory Privilege Escalation Framework
Python MIT License UpdatedApr 10, 2025 -
-
EWSTool Public
Forked from simonlee-hello/EWSToolEWSTool是一个针对EXCHANGE邮件服务器的后渗透利用工具。使用ews接口,实现人员邮箱列表获取、搜索邮件、下载邮件等实用功能。
Python UpdatedMar 12, 2025 -
ArgFuscator.net Public
Forked from wietze/ArgFuscator.netArgFuscator.net is an open-source, stand-alone web application that helps generate obfuscated command lines for common system-native executables.
TypeScript GNU General Public License v3.0 UpdatedFeb 12, 2025 -
-
ZeroEye Public
Forked from ImCoriander/ZeroEye自动化找白文件,用于扫描 EXE 文件的导入表,列出导入的DLL文件,并筛选出非系统DLL,符合条件的文件将被复制到特定的 X64 或 X86 文件夹
C++ UpdatedJan 2, 2025 -
CVE-2024-49112 Public
Forked from SafeBreach-Labs/CVE-2024-49113LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49112
Python BSD 3-Clause "New" or "Revised" License UpdatedJan 1, 2025 -
dodgypass Public
Forked from mohemiv/dodgypassGolden collection of weak passwords
MIT License UpdatedDec 12, 2024