Stars
Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares
SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.
Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already saved SAM and SYSTEM hives.
Flexible LDAP proxy that can be used to inspect & transform all LDAP packets generated by other tools on the fly.
Minimalist Asterisk Caller ID Spoofer and Secondary VOIP Line Configuration Built for AWS
FaceDancer is an exploitation tool aimed at creating hijackable, proxy-based DLLs by taking advantage of COM-based system DLL image loading
Covenant is a collaborative .NET C2 framework for red teamers.
Fully featured and community-driven hacking environment
Scrape, Hunt, and Transform names and usernames
NTLMSleuth: NTLM Hash Analysis Tool using https://ntlm.pw
Some of the presentations, workshops, and labs I gave at public conferences.
Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening guidance.
Just a simple silly PoC demonstrating executable "exe" file that can be used like exe, dll or shellcode...
Attempt at Obfuscated version of SharpCollection
MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.
Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…
Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) shares via HTTP(s)
Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar
PowerShell rebuilt in C# for Red Teaming purposes
Borrow cookies from your browser's authenticated session for use in Python scripts.
A collection of Azure AD/Entra tools for offensive and defensive security purposes
CVE-2020-0796 Remote Code Execution POC
A tool that takes over Windows Updates to craft custom downgrades and expose past fixed vulnerabilities