
PSSW100AVB
A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

Microsoft Signed PowerShell scripts

This repository is a collection of powershell functions every hacker should know

PowerShell rebuilt in C# for Red Teaming purposes

Abusing Azure services over C2

Hook PasswordChangeNotify

Powershell-C2


Native Nim WinRM shell with NTLM, Kerberos, file transfer, in-memory helpers, and AD/OPSEC reporting

Exploits Scripts and other tools that are useful during Penetration-Testing or Red Team engagement

SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, SuperPuTTY,…


Powershell Persistence Locator

This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported is…

A Windows reverse shell payload generator and handler that abuses the http(s) protocol to establish a beacon-like reverse shell.

A version of CVE-2017-0213 that I plan to use with an Empire stager

Source code for CVE-2017-16245 (Avecto Defendpoint bypass originally disclosed by Nettitude)

PowerShell enumeration script for discovering service-backed COM objects via CLSID/AppID correlation and activation testing.