
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Research framework redefining post-exploitation through decision intelligence.

Privilege Escalation Enumeration Script for Windows

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

A collection of awesome penetration testing resources, tools and other shiny things

Direct Memory Access (DMA) Attack Software

Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data.

Pupy is an opensource, multi-platform (Windows, Linux, OSX, Android), multi function RAT (Remote Administration Tool) mainly written in python. It…

An open-source post-exploitation framework for students, researchers and developers.

A swiss army knife for pentesting networks

open-source jailbreaking tool for many iOS devices

Penetration tests guide based on OWASP including test cases, resources and examples.

Windows Privilege Escalation from User to Domain Admin.

Windows protocol library, including SMB and RPC implementations, among others.

SMBeagle - Fileshare auditing tool.

Partial python implementation of SharpGPOAbuse