
atomic-red-team
Small and highly portable detection tests based on MITRE's ATT&CK.

Small and highly portable detection tests based on MITRE's ATT&CK.

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

Automation for internal Windows Penetrationtest / AD-Security

On-demand reverse shell service that auto-detects target environment and executes appropriate payload for remote access during penetration tests.

Exploits Windows IPv6 default configuration to spoof DNS via DHCPv6, redirecting victim traffic for credential relaying and man-in-the-middle attacks…

Checks expired domains for categorization/reputation and Archive.org history to determine good candidates for phishing and C2 domain names

Pop shells like a master.

Notion as a platform for offensive operations

Python and Powershell internal penetration testing framework

A cross platform C2/post-exploitation framework.

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113

The TrustedSec Attack Platform is a reliable method for droppers on an infrastructure in order to ensure established connections to an organization.

Empire client application

Portia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been…

Adversary simulation framework for authoring and automating attacker TTPs as repeatable YAML scenarios, helping red and blue teams validate detection…

Specify targets and run sets of tools against them

Automated Tactics Techniques & Procedures