
Empire
Encrypted C2 and post-exploitation framework for red teams, with modular PowerShell/Python/C#/Go agents, many offensive modules, and easy…

Encrypted C2 and post-exploitation framework for red teams, with modular PowerShell/Python/C#/Go agents, many offensive modules, and easy…

List of Awesome CobaltStrike Resources

This map lists the essential techniques to bypass anti-virus and EDR

Red team tool for EDR evasion: dynamically resolves syscall IDs, patches ntdll stubs, unhooks IAT hooks, and lists hooked APIs from major EDR vendors.

Burp Plugin to Bypass WAFs through the insertion of Junk Data

A framework that create an advanced stealthy dropper that bypass most AVs and have a lot of tricks

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

This repo covers some code execution and AV Evasion methods for Macros in Office documents

A collection of techniques, examples and a little bit of theory for manually obfuscating PowerShell scripts to achieve AV evasion, compiled for…

Tunnel TCP connections through a file

Win32 and Kernel abusing techniques for pentesters


This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Kernel-level tool to disable Sysmon and Windows Event Logging via driver-based hook injection, enabling stealthy post-exploitation operations on…

Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

AV/EDR Lab environment setup references to help in Malware development