
gopacket
A complete Go port of Impacket - 63 CLI tools and 24 libraries for Windows & Active Directory protocol attacks, compiled to a single dependency-free…

A complete Go port of Impacket - 63 CLI tools and 24 libraries for Windows & Active Directory protocol attacks, compiled to a single dependency-free…

A Go implementation of PinTheft (CVE-2026-43494)

C# port of WMImplant which uses either CIM or WMI to query remote systems

A Beacon Object File (BOF) that talks directly to Windows authentication packages through the LSA untrusted/trusted client interface, without…

Single executable reverse SOCKS5 proxy written in Golang.

Penetration testing framework with AI-driven decision engine

A third-party Gopher Assassin for the Havoc Framework.

Graphical attack management console for Metasploit: the lineage of Armitage as a single Go binary with a browser UI. Live network topology, campaign…

🦫 | GoRedOps is a repository dedicated to gathering and sharing advanced techniques and offensive malware for Red Team, with a specific focus on…

PoC for Zerologon - all research credits go to Tom Tervoort of Secura

Hershell is a simple TCP reverse shell written in Go.

Go toolkit for authorized Azure security assessments: enumerates subscriptions and resources, audits misconfigurations, and attacks public Blob…

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

Go proof-of-concept for CVE-2023-0386, using FUSE and overlayfs to escalate an unprivileged user to root on vulnerable Linux systems.

Aurora Remote Administration Tool

ToRat is a Remote Administation tool written in Go using Tor as a transport mechanism and RPC for communication

A C2 framework for initial access in Go

Autonomous AI red team framework that chains reconnaissance, exploitation, and post-exploitation into a single pipeline, then triages findings,…