
byob
An open-source post-exploitation framework for students, researchers and developers.

An open-source post-exploitation framework for students, researchers and developers.

A slightly more fun way to disable windows defender + firewall. (through the WSC api)


An information security preparedness tool to do adversarial simulation.

LimeRAT | Simple, yet powerful remote administration tool for Windows (RAT)

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

The TrustedSec Attack Platform is a reliable method for droppers on an infrastructure in order to ensure established connections to an organization.

.NET tool for installing Windows persistence via registry keys, scheduled tasks, services, WMI events, COM hijacks, and LNK backdoors, supporting…

RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. DerbyCon 2017 Talk:…

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

Generate Payloads and Control Remote Machines. [Discontinued]

Assist reverse tcp shells in post-exploration tasks


C++

Powershell Persistence Locator

Repository hosting a hypothetical EDR Spoofer, as discovered originally by Nightmare-Eclipse

Educational Linux kernel rootkit PoC exploring DKOM, syscall hooking, stealth, observability and defensive detection

A simple C2 Framework written in modern C++