
Windows
Collection of offensive techniques for attacking Windows environments, with practical methods for exploitation, privilege escalation, and adversarial…

Collection of offensive techniques for attacking Windows environments, with practical methods for exploitation, privilege escalation, and adversarial…

Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged processes to…

Encrypted C2 and post-exploitation framework for red teams, with modular PowerShell/Python/C#/Go agents, many offensive modules, and easy…

Real-time deepfake toolkit for penetration testing of identity verification and video conferencing systems. Supports face swap, image animation, and…

Simple (relatively) things allowing you to dig a bit deeper than usual.

Weaponize DLL hijacking easily. Backdoor any function in any DLL.


This is the tool to dump the LSASS process on modern Windows 11

Open-source adversary emulation for AI agents and MCP servers.

PrintNotifyPotato

Bypassing UAC with SSPI Datagram Contexts

Adversary simulation framework for authoring and automating attacker TTPs as repeatable YAML scenarios, helping red and blue teams validate detection…

A simple ptrace-less shared library injector for x64 Linux

Public Repo for Atomic Test Harness

A POC to disable TamperProtection and other Defender / MDE components

Detect EDR's exceptions by inspecting processes' loaded modules