
ThievingFox
Post-exploitation credential harvesting toolkit that injects into password managers and Windows utilities to capture credentials via DLL proxying,…

Post-exploitation credential harvesting toolkit that injects into password managers and Windows utilities to capture credentials via DLL proxying,…

Tools and Techniques for Red Team / Penetration Testing

List of Awesome CobaltStrike Resources

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

Collects and analyzes AD and Azure AD authentication logs to detect lateral movement attacks using graph-based anomaly detection, visualizing…

Modified version of the passing-the-hash tool collection made to work straight out of the box

Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

Collection of PowerShell functions a Red Teamer may use in an engagement

Project that brings together several pentest tools

Collection of tools that reflect the network dimension into Bloodhound's data

Collection of beacon BOF written to learn windows and cobaltstrike

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

Powerglot encodes offensive powershell scripts using polyglots . Offensive security tool useful for stego-malware, privilege escalation, lateral…

CVE-2022-28672 Vulnerabilidad Foxit PDF Reader - UaF - RCE - JIT Spraying

A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object

A collection of tools for dealing with TrickBot

PowerShell toolkit for Active Directory penetration testing, featuring domain/user/group enumeration, trust relationship analysis, RDP configuration,…