
offensive-one-liners
110 offensive security one-liners for authorized testing and CTFs, organized in one markdown notebook by category and kill-chain step. Dual-use…

110 offensive security one-liners for authorized testing and CTFs, organized in one markdown notebook by category and kill-chain step. Dual-use…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Detection-aware BloodHound attack-path scoring - find the quietest route to your objective, calibrated across audit/EDR/SIEM tiers.

Python implementation of OpenPsPipeJack

CVE-2025-26264 - GeoVision GV-ASWeb with the version 6.1.2.0 or less, contains a Remote Code Execution (RCE) vulnerability within its Notification…

Suricata rules for network anomaly detection

Manipulating and Abusing Windows Access Tokens.


Course repository for PowerShell for Pentesters Course

A compact guide to network pivoting for penetration testings / CTF challenges.

A basic emulation of an "RPC Backdoor"

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.

Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.

Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps…

RunasCs - Csharp and open version of windows builtin runas.exe

Remote operations commands implemented using Beacon Object Files

List of Awesome CobaltStrike Resources