#1Tools for maintaining long-term access to compromised systems, even after reboots.
Kitploit recommended

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)

A little tool to play with Windows security

Adversary Emulation Framework

An open-source post-exploitation framework for students, researchers and developers.

Comprehensive red teaming notes covering offensive security techniques including code injection, defense evasion, lateral movement, and persistence,…

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

Simple (relatively) things allowing you to dig a bit deeper than usual.

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

A collaborative, multi-platform, red teaming framework

Various tips & tricks

Attack and defend active directory using modern post exploitation adversary tradecraft activity

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security…

Trying to tame the three-headed dog.