Stars
AI Code Security Anti-Patterns distilled from 150+ sources to help LLMs generate safer code.
Raptor turns Claude Code into a general-purpose AI offensive/defensive security agent. By using Claude.md and creating rules, sub-agents, and skills, and orchestrating security tool usage, we confi…
SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using Windows Filtering Platform (WFP). This version fo…
Proof-of-Concept tool for extracting NTLMv1 hashes from sessions on modern Windows systems.
Windows protocol library, including SMB and RPC implementations, among others.
PowerHuntShares is an audit script designed in inventory, analyze, and report excessive privileges configured on Active Directory domains.
A tool designed for smuggling interactive command and control traffic through legitimate TURN servers hosted by reputable providers such as Zoom.
Dynamic shellcode loader with sophisticated evasion capabilities
An even funnier way to disable windows defender. (through WSC api)
A graph-based tool for visualizing effective access and resource relationships in AWS environments.
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
CloudMapper helps you analyze your Amazon Web Services (AWS) environments.
Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.
Azure Red Team tool for graphing Azure and Azure Active Directory objects
MaxMind's GeoIP2 GeoLite2 Country, City, and ASN databases
Lua Cheatsheet for Logitech G Hub
A tool leveraging Kerberos tickets to get Microsoft 365 access tokens using Seamless SSO
Remotely Enumerate sessions using undocumented Windows Station APIs
Command line interface to dump LSASS memory to disk via SilentProcessExit
Sliver extension to bypass UAC via cmstp written in rust