
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Build guide for Red Teaming home lab. GOAD lab setup in Proxmox and pfSense, Operator/C2 and Redirectors.

Automated adversary emulation (Caldera) against an AD lab to validate Sigma detection coverage and map results to MITRE ATT&CK.

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2…

Windows And Ways To Break It

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Crystal port of GodPotato to abuse SeImpersonatePrivilege with indirect syscalls, dynamic API resolution and compile-time string obfuscation. Run…

Detection-aware BloodHound attack-path scoring - the quietest route to your objective, calibrated across five detection tiers…

Application-scoped Windows network brownouts in native C and BOF form

Spawns macOS programs through launchd's private XPC interface without execing them, making EDR record launchd as parent. Supports one-shot,…

Simple (relatively) things allowing you to dig a bit deeper than usual.

A PoC ransomware sample to test out your ransomware response strategy.

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Kali365 - EvilTokens Replica

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

Adversary simulation and Red teaming platform with AI

This is the tool to dump the LSASS process on modern Windows 11