Stars
.net core implementation of Behinder Payload
Inject RDPThief into memory with PowerShell.
Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).
Jar Analyzer - 一个JAR包分析工具,批量分析,SCA漏洞分析,方法调用关系搜索,字符串搜索,Spring组件分析,信息泄露检查,CFG程序分析,JVM栈帧分析,进阶表达式搜索,字节码指令级的动态调试分析,反编译JAR包一键导出,一键提取序列化数据恶意代码,一键分析BCEL字节码
A fork of the great TokenTactics with support for CAE and token endpoint v2
Pentesting cheatsheet with all the commands I learned during my learning journey. Will try to to keep it up-to-date.
A collection of Azure AD/Entra tools for offensive and defensive security purposes
This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
A tool to uncover undocumented APIs from the AWS Console.
A repository for learning various heap exploitation techniques.
Identifies the bytes that Microsoft Defender flags on.
Proof-of-concept obfuscation toolkit for C# post-exploitation tools
Collection of UAC Bypass Techniques Weaponized as BOFs
一个攻防知识仓库 Red Teaming and Offensive Security
Project for tracking publicly disclosed DLL Hijacking opportunities.
Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks
Impacket is a collection of Python classes for working with network protocols.
Enumeration/exploit/analysis/download/etc pentesting framework for GCP; modeled like Pacu for AWS; a product of numerous hours via @WebbinRoot
Pre-Built Vulnerable Environments Based on Docker-Compose