
ThreadlessInject
Threadless Process Injection using remote function hooking.

Threadless Process Injection using remote function hooking.

Execute PowerShell code at the antimalware-light protection level.

Canary Hunter aims to be a quick PowerShell script to check for Common Canaries in various formats generated for free on canarytokens.org

A tool to find folders excluded from AV real-time scanning using a time oracle

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Detect EDR's exceptions by inspecting processes' loaded modules

Attempt at Obfuscated version of SharpCollection

Leak NTLM via Website tab in teams via MS Office

Weaponizing DCOM for NTLM Authentication Coercions

Exploits the Windows Server 2025 dMSA privilege escalation vulnerability to enumerate writable OUs, escalate to arbitrary domain users, extract…

Cobalt Strike BOF collection for attacking Azure AD during red team operations, covering authentication, enumeration, and post-exploitation vectors.

I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016

Never ever ever use pixelation as a redaction technique

Purple-team telemetry & simulation toolkit.

This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2…

Voice-based detective interrogation game. Mistral Large 3 + Voxtral STT + ElevenLabs TTS. Built for the Mistral Worldwide Hackathon 2026.

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

An information security preparedness tool to do adversarial simulation.