Skip to content
Change the repository type filter

All

    Repositories list

    • IObit-EoP

      Public
      (0day) Local Privilege Escalation in IObit Malware Fighter
      C
      13000Updated Jan 8, 2025Jan 8, 2025
    • A Rust implementation of GodPotato — abusing SeImpersonate to gain SYSTEM privileges. Includes a TCP-based reverse shell and indirect NTAPI for various operations.
      Rust
      MIT License
      12000Updated Jan 6, 2025Jan 6, 2025
    • Next Generation C2 Framework
      Go
      Apache License 2.0
      21000Updated Jan 6, 2025Jan 6, 2025
    • COM ViewLogger — new malware keylogging technique
      C++
      30100Updated Jan 6, 2025Jan 6, 2025
    • hachimi

      Public
      哈基米 一个分布式蜜网系统,用于收集和分析来自互联网的背景噪音 (Internet Background Noise)
      Go
      9000Updated Jan 5, 2025Jan 5, 2025
    • zapret

      Public
      DPI bypass multi platform
      C
      709000Updated Jan 5, 2025Jan 5, 2025
    • ZigStrike

      Public
      ZigStrike, a powerful Payload Delivery Pipeline developed in Zig, offering a variety of injection techniques and anti-sandbox features.
      Zig
      GNU General Public License v2.0
      36000Updated Jan 4, 2025Jan 4, 2025
    • 收集整理漏洞EXP/POC,大部分漏洞来源网络,目前收集整理了1400多个poc/exp,长期更新。
      1k100Updated Jan 4, 2025Jan 4, 2025
    • dnsgen

      Public
      DNSGen is a powerful and flexible DNS name permutation tool designed for security researchers and penetration testers. It generates intelligent domain name variations to assist in subdomain discovery and security assessments.
      Python
      MIT License
      118000Updated Jan 3, 2025Jan 3, 2025
    • 愿我的努力与付出,能成为你向上攀登的基石。要是10年前有人告诉我这些就好了。
      15000Updated Jan 3, 2025Jan 3, 2025
    • PenSafe

      Public
      PenSafe(渗透测试安全扫描器),能用上此工具说明测试系统很安全!!!
      Go
      3000Updated Jan 2, 2025Jan 2, 2025
    • Execute dotnet app from unmanaged process
      C++
      9000Updated Dec 29, 2024Dec 29, 2024
    • LitterBox

      Public
      sandbox approach for malware developers and red teamers to test payloads against detection mechanisms before deployment
      YARA
      28000Updated Dec 29, 2024Dec 29, 2024
    • Slides for COM Hijacking AV/EDR Talk on 38c3
      7000Updated Dec 28, 2024Dec 28, 2024
    • ADcheck

      Public
      Assess the security of your Active Directory with few or all privileges.
      Python
      GNU General Public License v3.0
      27000Updated Dec 27, 2024Dec 27, 2024
    • tun2proxy

      Public
      Tunnel (TUN) interface for SOCKS and HTTP proxies
      Rust
      MIT License
      104100Updated Dec 27, 2024Dec 27, 2024
    • 三色哥斯拉(Godzilla)
      9000Updated Dec 26, 2024Dec 26, 2024
    • clematis

      Public
      PE to shellcode
      Python
      23000Updated Dec 26, 2024Dec 26, 2024
    • Tool to extract username and password of current user from PanGPA in plaintext
      C++
      15000Updated Dec 23, 2024Dec 23, 2024
    • A sleek and intuitive GUI built with Tkinter for managing the Evil-BW16 device, designed for ethical WiFi network testing and penetration testing.
      Python
      MIT License
      3000Updated Dec 21, 2024Dec 21, 2024
    • flyphish

      Public
      Deploy a phishing infrastructure on the fly.
      Shell
      MIT License
      7000Updated Dec 21, 2024Dec 21, 2024
    • Krueger

      Public
      Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC
      C#
      GNU General Public License v3.0
      28000Updated Dec 20, 2024Dec 20, 2024
    • Validates priv escalation of AD trusts
      Python
      7000Updated Dec 20, 2024Dec 20, 2024
    • sccmhound

      Public
      A BloodHound collector for Microsoft Configuration Manager
      C#
      GNU General Public License v3.0
      17000Updated Dec 19, 2024Dec 19, 2024
    • Automated Hosting Information Hunting Tool - Windows 主机信息自动化狩猎工具
      C#
      27000Updated Dec 19, 2024Dec 19, 2024
    • aad-bofs

      Public
      AzureAD beacon object files
      C
      8000Updated Dec 18, 2024Dec 18, 2024
    • A Reflective Loader for macOS
      C++
      19000Updated Dec 17, 2024Dec 17, 2024
    • Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide
      HTML
      3000Updated Dec 16, 2024Dec 16, 2024
    • A Rust implementation of Internal-Monologue — retrieving NetNTLM hashes without touching LSASS, leveraging SSPI for NTLM negotiation and indirect NTAPIs for core operations.
      Rust
      MIT License
      18000Updated Dec 15, 2024Dec 15, 2024
    • FuzzyAI

      Public
      A powerful tool for automated LLM fuzzing. It is designed to help developers and security researchers identify and mitigate potential security vulnerabilities in their LLM APIs.
      Python
      Apache License 2.0
      13000Updated Dec 15, 2024Dec 15, 2024