

Tools and Techniques for Red Team / Penetration Testing

List of Awesome CobaltStrike Resources

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

Modified version of the passing-the-hash tool collection made to work straight out of the box

Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

Collection of tools that reflect the network dimension into Bloodhound's data

Collection of beacon BOF written to learn windows and cobaltstrike

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object

A collection of tools for dealing with TrickBot

Powerglot encodes offensive powershell scripts using polyglots . Offensive security tool useful for stego-malware, privilege escalation, lateral…

PowerShell toolkit for Active Directory penetration testing, featuring domain/user/group enumeration, trust relationship analysis, RDP configuration,…

Curated wordlists for brute-forcing SSH private key filenames, aiding penetration testers in locating keys via LFI or enumeration during lateral…

Project that brings together several pentest tools