
warcannon
High speed/Low cost CommonCrawl RegExp in Node.js
Tools for extracting sensitive data from compromised systems without detection.

High speed/Low cost CommonCrawl RegExp in Node.js

A collection of tools for dealing with TrickBot

Hide 🕵️♂️ your files of any type inside a image of your choice using steganography


File Injector is a script that allows you to store any file in an image using steganography

Enhanced version of secretsdump.py from Impacket. Adds multi-threading and accepts an input file with a list of target hosts for simultaneous secrets…

DNS tunneling tool using PowerShell and Nslookup to exfiltrate data and deliver payloads via DNS TXT/MX records, bypassing Constrained Language Mode…

Bella is a pure python post-exploitation data mining tool & remote administration tool for macOS. 🍎💻

More examples using the Impacket library designed for learning purposes.

Azure Post Exploitation Framework

Reuse open handles to dynamically dump LSASS.

FudgeC2 - a command and control framework designed for team collaboration and post-exploitation activities.

Bypassing NTFS permissions to read any files as unprivileged user.

Exfiltrate blind Remote Code Execution and SQL injection output over DNS via Burp Collaborator.

Universal Dynamic Virtual Channel connector for Remote Desktop Services

Fully undetected grabber (grabs wallets, passwords, cookies, modifies discord client etc.)

Parses Snaffler output file and generate beautified outputs.

The CIA Hive source code as released by Wikileaks