
Snaffler
a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )

a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )

Collection of Offensive C# Tooling

A tool to abuse Exchange services

SharpSploit is a .NET post-exploitation library written in C#

An information security preparedness tool to do adversarial simulation.

A collection of AWS penetration testing junk

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

A framework for constructing self-spreading binaries

Bash post exploitation toolkit

Android remote administration tool

LSTAR - CobaltStrike 综合后渗透插件

New generation of wmiexec.py

Various Cobalt Strike BOFs

A Python3 based C2 server to make life of red teamer a bit easier. The payload is capable to bypass all the known antiviruses and endpoints.

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Sinister is Windows/Linux Keylogger Generator which sends key-logs via email with other juicy target info