
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

An information security preparedness tool to do adversarial simulation.

Detection-aware BloodHound attack-path scoring - the quietest route to your objective, calibrated across five detection tiers…

Infection Monkey - An open-source adversary emulation platform

A windows token impersonation tool

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows…

This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2…

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Attempt at Obfuscated version of SharpCollection

Weaponizing DCOM for NTLM Authentication Coercions

Exploits the Windows Server 2025 dMSA privilege escalation vulnerability to enumerate writable OUs, escalate to arbitrary domain users, extract…

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.

CVE-2026-54121 (Certighost) AD CS DC-impersonation PoC. Patched SAN handling + MAQ-safe account reuse.

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.