
Chrome-App-Bound-Encryption-Decryption
Bypass Chromium's App-Bound Encryption via Direct Syscall-based Reflective Process Hollowing. Extract cookies, passwords, payment methods & tokens…

Bypass Chromium's App-Bound Encryption via Direct Syscall-based Reflective Process Hollowing. Extract cookies, passwords, payment methods & tokens…

Dump cookies and credentials directly from Chrome/Edge process memory

OSINT Project. Collect information from a mail. Gather. Profile. Timeline.

Cross-platform framework for enumerating O365 accounts, password spraying, exfiltrating emails/Teams/OneDrive data, and backdooring EntraID accounts…

Get All Registered Wifi Passwords from Target Computer.

Xenotix Python Keylogger for Windows.

Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely

Simple Windows and Linux keystroke injection tool that exfiltrates stored WiFi data (SSID and password).

Web Based Command Control Framework (C2) #C2 #PostExploitation #CommandControl #RedTeam #C2Framework #PHPC2 #.NETMalware #Malware #PHPMalware #CnC…

MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).

CVE-2023-24055 PoC (KeePass 2.5x)

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

Enhanced version of secretsdump.py from Impacket. Adds multi-threading and accepts an input file with a list of target hosts for simultaneous secrets…

Fully undetected grabber (grabs wallets, passwords, cookies, modifies discord client etc.)

PowerShell script that invokes legitimate credential prompts and exfiltrates captured passwords over DNS using CredentialPicker and Resolve-DnsName.

Injects JavaScript keylogger into WebView2 pages to capture keystrokes and exfiltrate cookies from Microsoft authentication sessions via HTTP GET…

Execute a brute force attack with Steghide to file with hide information and password established