
legion
Legion is an open source, easy-to-use, super-extensible and semi-automated network penetration testing tool that aids in discovery, reconnaissance…

Fuzz 401/403/404 pages for bypasses

A tool which bypasses AMSI (AntiMalware Scan Interface) and PowerShell CLM (Constrained Language Mode) and gives you a FullLanguage PowerShell…

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

.NET/PowerShell/VBA Offensive Security Obfuscator

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

RefleXXion is a utility designed to aid in bypassing user-mode hooks utilised by AV/EPP/EDR etc. In order to bypass the user-mode hooks, it first…

Modify version of impacket wmiexec.py, get output(data,response) from registry, don't need SMB connection, also bypassing antivirus-software in…

Spray365 makes spraying Microsoft accounts (Office 365 / Azure AD) easy through its customizable two-step password spraying approach. The built-in…

A simple remote tool in C#.

Gorsair gives root access on remote docker containers that expose their APIs

Cobalt Strike C2 Reverse proxy that fends off Blue Teams, AVs, EDRs, scanners through packet inspection and malleable profile correlation

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.


Automated Tool That Generates The Perfect Meterpreter Powershell Payload

A VBA implementation of the RunPE technique or how to bypass application whitelisting.

Scripts for: How to Build a Covert Pentesting Infrastructure Almost Free