
PoshC2_Old
Powershell C2 Server and Implants

Powershell C2 Server and Implants

Post-exploitation credential harvesting toolkit that injects into password managers and Windows utilities to capture credentials via DLL proxying,…

TCP Port Redirection Utility

C# tool for lateral movement through WSUS by creating, approving, and deploying malicious updates to target Windows clients in Active Directory…

mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse

🐐 GoAT (Golang Advanced Trojan) is a trojan that uses Twitter as a C&C server

Miscellaneous Tools

Cross-platform C2 agent for Mythic with dynamic function loading, SOCKS5 proxy, file operations, shellcode injection, and macOS/Windows…

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

Conquest is a feature-rich and malleable command & control/post-exploitation framework developed in Nim.

A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object

Freedom Fighting Mode: open source hacking harness

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability

.NET Project for performing Authenticated Remote Execution