


Modular post-exploitation framework managing reverse-shell sessions over TCP/TLS/mTLS with plugins for enumeration, in-memory execution, SOCKS5…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

a unique framework for cybersecurity simulation and red teaming operations, windows auditing for newer vulnerabilities, misconfigurations and…

This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

Comprehensive red teaming notes covering offensive security techniques including code injection, defense evasion, lateral movement, and persistence,…

Red Teaming & Pentesting checklists for various engagements

A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.

Phantom Tap (PhanTap) - an ‘invisible’ network tap aimed at red teams

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Collection of PowerShell functions a Red Teamer may use in an engagement

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

Comprehensive self-paced manual on Windows identity, Kerberos, and PKI internals, covering credential dumping, ticket forgery, domain persistence,…

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

SSH spreading made easy for red teams in a hurry

SMB Auto Relay provides the automation of SMB/NTLM Relay technique for pentesting and red teaming exercises in active directory environments.

Single-file HTML cheat sheet for red teamers and pentesters with auto-injecting attacker/target variables, OS-aware reverse shell generator, and…