
NoiseHound
Detection-aware BloodHound attack-path scoring - the quietest route to your objective, calibrated across five detection tiers…

Detection-aware BloodHound attack-path scoring - the quietest route to your objective, calibrated across five detection tiers…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.

A windows token impersonation tool

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Attempt at Obfuscated version of SharpCollection

Weaponizing DCOM for NTLM Authentication Coercions

Exploits the Windows Server 2025 dMSA privilege escalation vulnerability to enumerate writable OUs, escalate to arbitrary domain users, extract…

CVE-2026-54121 (Certighost) AD CS DC-impersonation PoC. Patched SAN handling + MAQ-safe account reuse.

This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2…

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

An information security preparedness tool to do adversarial simulation.

Infection Monkey - An open-source adversary emulation platform

Adversary Emulation Framework

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows…