Stars
Advanced Active Directory network topology analyzer with SMB validation, multiple authentication methods (password/NTLM/Kerberos), and comprehensive network discovery. Export results as BloodHound‑…
Where I store my conference presentations, hoping to share more with the community
WireGuard VPN installer for Linux servers
StandIn is a small .NET35/45 AD post-exploitation toolkit
Situational Awareness commands implemented using Beacon Object Files
An OOB interaction gathering server and client library
A centralized resource for previously documented WDAC bypass techniques
A curated list of awesome YARA rules, tools, and people.
Wiki to collect Red Team infrastructure hardening resources
Exploit for EfsPotato(MS-EFSR EfsRpcOpenFileRaw with SeImpersonatePrivilege local privalege escalation vulnerability).
CloudMapper helps you analyze your Amazon Web Services (AWS) environments.
My Favorite Offensive Security Scripts
hackinaggie / OSEP-Tools-v2
Forked from Octoberfest7/OSEP-ToolsA marriage between Octoberfest7/OSEP-Tools and chvancooten/OSEP-Code-Snippets with some improvements/additions
The Browser Exploitation Framework Project
.NET 4.0 CLR Project to retrieve Chromium data, such as cookies, history and saved logins.
EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.
The Discretionary ACL Modification Project: Persistence Through Host-based Security Descriptor Modification
SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GPO) in order to compromise the objects that are controlled by…
A curated list of cloud pentesting resource, contains AWS, Azure, Google Cloud
Resources to learn cloud environment and pentesting the same, contains AWS, Azure, Google Cloud
Scripts and tools for AWS Pentest
My cheatsheet notes to pentest AWS infrastructure