Skip to content
View stishy's full-sized avatar

Block or report stishy

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Shark Jack payloads for testing exposed RJ45 (ethernet) ports and dealing with port security.

Shell 8 1 Updated Sep 7, 2024

The different ways to dump lsass

C 192 24 Updated Aug 15, 2025

Gain insights into MS-RPC implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By following this approach, a security researcher will hopefully…

C# 294 36 Updated Oct 15, 2025

Some POCs for my BYOVD research and find some vulnerable drivers

Rust 1 Updated May 28, 2025

Shellcode encryptor using a substitution cipher with a randomly generated key.

Rust 141 25 Updated Jan 18, 2025

Some of my personal notes that helped me pass the OSWP

56 11 Updated May 15, 2022

ScriptSentry finds misconfigured and dangerous logon scripts.

PowerShell 599 53 Updated Dec 20, 2024

C# Azure Function with an HTTP trigger that generates obfuscated PowerShell snippets that break or disable AMSI for the current process.

C# 421 75 Updated Sep 1, 2024

Self-deployable file hosting service for red teamers, allowing to easily upload and share payloads over HTTP and WebDAV.

JavaScript 2,204 279 Updated Feb 25, 2023

Ransomware simulation script written in PowerShell. Useful for testing your defenses and backups against real ransomware-like activity in a controlled setting.

PowerShell 231 33 Updated Oct 14, 2024

Scripts that are intended to help you in your pen-testing and bug-hunting efforts by automating various manual tasks, making your work more efficient and effective.

Python 92 31 Updated Sep 27, 2025

Deploy stealthy reverse shells using advanced process hollowing with GhostStrike – a C++ tool for ethical hacking and Red Team operations.

C++ 802 95 Updated Sep 3, 2024

This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP, IMAP, etc from a pcap file or from a live interface.

Python 2,274 429 Updated Aug 22, 2025

SCCMHunter is a post-ex tool built to streamline identifying, profiling, and attacking SCCM related assets in an Active Directory domain.

Python 837 110 Updated Aug 6, 2025

Timeroasting scripts by Tom Tervoort

Python 363 41 Updated Jun 27, 2025

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

C# 577 62 Updated Mar 19, 2024

Remote command line LSASS extractor

Python 33 4 Updated Aug 25, 2025

Identifies the bytes that Microsoft Defender flags on.

C# 2,525 462 Updated Sep 14, 2023

OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team exercises.

C# 818 148 Updated Oct 27, 2023

a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )

C# 2,576 248 Updated Oct 7, 2025

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

PowerShell 4,874 655 Updated Sep 6, 2025

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security weaknesses

JavaScript 1,439 150 Updated Mar 12, 2025

Dominate Active Directory with PowerShell.

PowerShell 1,064 114 Updated Oct 14, 2025

Custom queries list for BloodHound

Python 30 3 Updated Jul 8, 2025

A repository for additional files related to the book Windows Security Internals with PowerShell from No Starch Press.

PowerShell 208 19 Updated Aug 21, 2025

Some settings stolen from multiple scripts @ZephrFish

Batchfile 130 24 Updated Apr 26, 2025

RACE is a PowerShell module for executing ACL attacks against Windows targets.

PowerShell 233 66 Updated May 5, 2023

⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting

Ruby 4,199 723 Updated Aug 28, 2025
Next