Lists (1)
Sort Name ascending (A-Z)
Stars
A comprehensive tool that provides an insightful analysis of Microsoft's monthly security updates.
Partial python implementation of SharpGPOAbuse
SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GPO) in order to compromise the objects that are controlled by…
Data Loss Prevention (DLP) Sample Data Files
Proof of concept & details for CVE-2025-21298
AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security weaknesses
Malware Detection and Classification Using Machine Learning
Shadow Dumper is a powerful tool used to dump LSASS memory, often needed in penetration testing and red teaming. It uses multiple advanced techniques to dump memory, allowing to access sensitive da…
JSNinja is a powerful tool designed for security researchers and developers looking to extract sensitive information and Urls from JavaScript files.
ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound, and also supports full-object dumping to NDJSON.
I-Espresso is a tool that enables users to generate Portable Executable (PE) files from batch scripts. Leveraging IExpress, it demonstrates how file extension spoofing can be used to evade detection.
Xploitra is a powerful reverse shell payload generator for educational and security testing. It offers customizable payloads with advanced obfuscation and session management, making it ideal for si…
NukeAMSI is a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments.
Over 400 software engineering companies that are easy to apply to
All-in-one guide to getting a tech job abroad 🌎
A list of semi to fully remote-friendly companies (jobs) in tech.
List of Awesome Red Team / Red Teaming Resources This list is for anyone wishing to learn about Red Teaming but do not have a starting point.
A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.
Tool for Active Directory Certificate Services enumeration and abuse
Proof of Concept Exploit for CVE-2024-9465
A simple, easy to use PowerShell script to remove pre-installed apps from Windows, disable telemetry, remove Bing from Windows search as well as perform various other changes to declutter and impro…
Analyse MSI files for vulnerabilities
This project aims to compare and evaluate the telemetry of various EDR products.
poc for CVE-2024-38063 (RCE in tcpip.sys)
A tool which is uses to remove Windows Defender in Windows 8.x, Windows 10 (every version) and Windows 11.
Impacket is a collection of Python classes for working with network protocols.