Highlights
- Pro
Red Team
Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods
A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)
Python3 terminal application that contains 405 Neo4j cyphers for BloodHound data sets and 388 GUI cyphers
Phantom Tap (PhanTap) - an ‘invisible’ network tap aimed at red teams
A Payload Loader Designed With Advanced Evasion Features
Venom is a library that meant to perform evasive communication using stolen browser socket
Spoofy is a program that checks if a list of domains can be spoofed based on SPF and DMARC records.
Python script to enumerate valid Microsoft 365 domains, retrieve tenant name, and check for an MDI instance.
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
A list of methods to coerce a windows machine to authenticate to an attacker-controlled machine through a Remote Procedure Call (RPC) with various protocols.
"Screwed Drivers" centralized information source for code references, links, etc.
.NET/PowerShell/VBA Offensive Security Obfuscator
An advanced tool for working with access tokens and Windows security policy.
Materials for the workshop "Red Team Ops: Havoc 101"
Cobalt Strike is a post-exploitation framework designed to be extended and customized by the user community. Several excellent tools and scripts have been written and published, but they can be cha…
Freeze.rs is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls written in RUST
KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to be able to have a web server and some kitten an…
Experimental Windows x64 Kernel Rootkit with anti-rootkit evasion features.
Fileless Command Execution for Lateral Movement in Nim
☁️ ⚡ Granular, Actionable Adversary Emulation for the Cloud
An email spoofing testing tool that aims to bypass SPF/DKIM/DMARC and forge DKIM signatures.🍻