-
SpecterOps
- UK
-
09:56
(UTC) - https://blog.xpnsec.com
- @_xpn_
- in/xpn
Highlights
Stars
SOAPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) from Linux hosts.
Active Directory data ingestor for BloodHound Community Edition written in Rust. 🦀
Adaptive DLL hijacking / dynamic export forwarding
Flexible LDAP proxy that can be used to inspect & transform all LDAP packets generated by other tools on the fly.
UAC Bypass using UIAccess program QuickAssist
Damn Vulnerable MCP Server
🧙♂️ Node.js Command & Control for Script-Jacking Vulnerable Electron Applications
A collection of GPT system prompts and various prompt injection/leaking knowledge.
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
🔍 gowitness - a golang, web screenshot utility using Chrome Headless
A Post-exploitation Toolset for Interacting with the Microsoft Graph API
Tools for interacting with authentication packages using their individual message protocols
ObjectiveC CLI tool for interacting with macOS Keychain
A collection of types & functions definitions useful for iOS/macOS binaries analysis.
An insecurely implemented and installed Windows service for emulating elevation of privileges vulnerabilities
FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is designed to be used in conjunction with a SIEM or other log ag…
A programming language for the cloud ☁️ A unified programming model, combining infrastructure and runtime code into one language ⚡
Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown
Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive toolkits.