Stars
September Chrome 1day by István Kurucsai
Collection of scripts and templates to generate Office documents embedded with the DDE, macro-less command execution technique.
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. It will automatically generate a userlist from the domain which excludes accounts t…
Exploit for the Post-Auth RCE vulnerability in Pulse Secure Connect
Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive toolkits.
Analysis of malware and Cyber Threat Intel of APT and cybercriminals groups
Open Source C++ Crypter. AES-256 Bit Encryption, Virtual Machine Detection and Almost FUD
Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loading of a library from memory into a host process.
AttackSurfaceMapper is a tool that aims to automate the reconnaissance process.
Tunna is a set of tools which will wrap and tunnel any TCP communication over HTTP. It can be used to bypass network restrictions in fully firewalled environments.
Hashtopolis - distributed password cracking with Hashcat
netshell features all in version 2 powershell
Covenant is a collaborative .NET C2 framework for red teamers.
Creates dictionaries based on Wikipedia titles
RedPeanut is a small RAT developed in .Net Core 2 and its agent in .Net 3.5 / 4.0.
A fast reverse proxy to help you expose a local server behind a NAT or firewall to the internet.
A collection of source code for various RATs, Stealers, and other Trojans.
😱 A curated list of amazingly awesome OSINT
Probabilistic Context Free Grammar (PCFG) password guess generator
A tool that turns the authoritative nameservers of DNS providers to resolvers and resolves the target domain list. Please think of this as a reasearch into an alternative approach at gaining and us…
awesome list of browser exploitation tutorials