Skip to content
View leonjza's full-sized avatar
[hip, hip]
[hip, hip]

Highlights

  • Pro

Organizations

@sensepost @eveseat @bsides-vendomatic

Block or report leonjza

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

Red Team

113 repositories

Red team Interview Questions

629 72 Updated Jul 23, 2024

A reference of Windows API function calls, including functions for file operations, process management, memory management, thread management, dynamic-link library (DLL) management, synchronization,…

1,188 129 Updated Oct 4, 2024

Adaptive DLL hijacking / dynamic export forwarding - EAT preserve

Python 76 8 Updated Aug 5, 2024

A tool leveraging Kerberos tickets to get Microsoft 365 access tokens using Seamless SSO

Python 165 11 Updated Aug 25, 2024

Halberd : Multi-Cloud Attack Platform

Python 250 25 Updated Mar 5, 2025

A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object

C++ 233 40 Updated May 12, 2020

Macro-header for compile-time C obfuscation (tcc, win x86/x64)

C 1,078 86 Updated Mar 6, 2025

A new technique that can be used to bypass memory scanners. This can be useful in hiding problematic code (such as reflective loaders implemented by C2 beacons) or other problematic executables tha…

C++ 298 57 Updated Oct 7, 2024

Dumping DPAPI credz remotely

Python 1,081 126 Updated Feb 25, 2025

Collect Windows telemetry for Maldev

C++ 299 31 Updated Feb 8, 2025

Port of Cobalt Strike's Process Inject Kit

C++ 167 23 Updated Dec 1, 2024

A collection of position independent coding resources

C 66 2 Updated Feb 15, 2025

Minimalist Asterisk Caller ID Spoofer and Secondary VOIP Line Configuration Built for AWS

Shell 285 44 Updated Sep 10, 2020

Cross-platform proxy resolution library written in C.

C 13 3 Updated Feb 18, 2025

sandbox approach for malware developers and red teamers to test payloads against detection mechanisms before deployment

YARA 565 64 Updated Feb 16, 2025

🪅 Windows User Space Emulator

C++ 875 61 Updated Mar 5, 2025

WinVisor - A hypervisor-based emulator for Windows x64 user-mode executables using Windows Hypervisor Platform API

C++ 540 37 Updated Jan 23, 2025

An Aggressor Script that utilizes NtCreateUserProcess to run binaries

C++ 24 4 Updated Jan 30, 2025

Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-native executables.

PowerShell 129 26 Updated Feb 14, 2025

BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)

C 166 17 Updated Feb 6, 2025

Active Directory Authentication Library

Go 60 2 Updated Mar 4, 2025