Thanks to visit codestin.com
Credit goes to github.com

Skip to content
View davidlebr1's full-sized avatar

Organizations

@nsec @TheRingZer0Team

Block or report davidlebr1

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads

PowerShell 124 13 Updated Oct 22, 2025

Example code on how to use a custom dll during dll hijack on Narrator.exe as a persistence

C++ 12 1 Updated Oct 27, 2025

Redirect any Windows TCP and UDP traffic to HTTP/Socks5 proxy

C# 222 18 Updated Oct 22, 2025

Templates for developing your own listeners and agents for AdaptixC2.

Go 20 4 Updated Sep 30, 2025

Stealthily inject shellcode into an executable

Python 381 69 Updated Oct 19, 2025

Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows | Provides tools and Guides for Pers…

C# 3,046 236 Updated Oct 28, 2025

adws enumeration bof

C 152 16 Updated Oct 2, 2025

Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts watermarking, IOCs collection & PE Backdooring. You feed it wi…

PowerShell 1,007 141 Updated Oct 14, 2025

A script that helps you understand why your E-Mail ended up in Spam

Python 655 96 Updated Apr 17, 2025

This is the tool to dump the LSASS process on modern Windows 11

C++ 460 58 Updated Oct 28, 2025

KVC enables unsigned driver loading via DSE bypass (g_CiOptions patch/skci.dll hijack) and PP/PPL manipulation for LSASS memory dumping on modern Windows with HVCI/VBS.

C++ 43 12 Updated Oct 24, 2025

Swiss Army Knife for payload encryption, obfuscation, and conversion to byte arrays – all in a single command (14 output formats supported)! ☢️

Go 179 26 Updated Sep 20, 2025

COM-based DLL Surrogate Injection

C++ 127 12 Updated Sep 6, 2025

Dump processes over WMI with MSFT_MTProcess

Python 75 7 Updated Sep 17, 2025

A tool for enumerating potential hosts that are open to GSSAPI abuse within Active Directory networks

Python 175 23 Updated Aug 16, 2025

Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domain joined machies

C# 262 30 Updated Dec 27, 2024

BOF to steal browser cookies & credentials

C 449 40 Updated Oct 14, 2025

Windows Remote Administration Tool that uses Discord, Telegram and GitHub as C2s

Python 660 150 Updated Jul 18, 2024

Direct3D 11 Screenshot BOF

C++ 12 Updated Jul 21, 2025

psexecsvc - a python implementation of PSExec's native service implementation

Python 220 19 Updated Feb 11, 2025

🔍 gowitness - a golang, web screenshot utility using Chrome Headless

Go 4,019 408 Updated May 27, 2025

Waiting Thread Hijacking - injection by overwriting the return address of a waiting thread

C 245 21 Updated Aug 31, 2025

Chrome browser extension-based Command & Control

HTML 190 21 Updated Jul 2, 2025

A collection of various and sundry code snippets that leverage .NET dynamic tradecraft

C# 146 17 Updated May 18, 2024

A centralized resource for previously documented WDAC bypass techniques

580 78 Updated Sep 8, 2025

CLI tool to interact with the BloodHound CE API

Python 58 6 Updated Sep 25, 2025

Flexible LDAP proxy that can be used to inspect & transform all LDAP packets generated by other tools on the fly.

Go 167 9 Updated Dec 19, 2024

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

C++ 378 53 Updated Dec 13, 2024
Next