
metasploitable-pentest-lab
Pentest completo sobre Metasploitable: recon con nmap, explotación con Metasploit (CVE-2007-2447), extracción y cracking de credenciales,…

Pentest completo sobre Metasploitable: recon con nmap, explotación con Metasploit (CVE-2007-2447), extracción y cracking de credenciales,…

Red Team Cheatsheet in constant expansion.

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

An open-source post-exploitation framework for students, researchers and developers.

Attack and defend active directory using modern post exploitation adversary tradecraft activity

Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security…

Various tips & tricks

📦 Make security testing of K8s, Docker, and Containerd easier.

PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server

An evil RAT (Remote Administration Tool) for macOS / OS X.

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2…

iOS/macOS/Linux Remote Administration Tool

Self‑healing Gossip Mesh C2 with Assisted Peer Discovery, Cross-Platform BOF Execution, and Scriptable Agents.

Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources