
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Security analysis toolkit for proprietary car protocols

Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

Linux operating system for embedded devices with writable filesystem, package management, and build framework. Enables custom firmware creation for…

automated password spraying tool

POC for utilizing wikipedia API for Command and Control

A swiss army knife for pentesting networks

Penetration tests guide based on OWASP including test cases, resources and examples.

Offensive & defensive Linux kernel security research focused on rootkit behavior, observable artifacts and detection.


⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡

The Browser Exploitation Framework Project

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

This is a webshell open source project

proxychains ng (new generation) - a preloader which hooks calls to sockets in dynamically linked programs and redirects it through one or more…

Wrong project! You should head over to http://github.com/sshuttle/sshuttle

Automated vulnerable Active Directory lab suite for practicing penetration testing techniques, with prebuilt domains/forests and standalone attack…

A fast, simple, recursive content discovery tool written in Rust.