
Invoke-DCSync
Invoke-DCSync

Invoke-DCSync

Empire is a PowerShell and Python post-exploitation agent.

C# tool that enumerates running processes, loaded DLLs, installed services, and drivers to detect the presence of AV, EDR, and logging products,…

Penetration testing utility and antivirus assessment tool.

Encodes a PowerShell script in the pixels of a PNG file and generates a oneliner to execute

This repo exists as a quick and dirty arsenal of methods and scripts to subvert .NET SSL/TLS certificate validation in PowerShell and press on with…

Dynamic Windows API resolver and unhooker that detects and restores hooked functions (IAT, EAT, inline patches) to invoke unmonitored system calls…

PowerShell Obfuscator

PowerShell Script to Dump Windows Credentials from the Credential Manager

DNS data exfiltrator that sends payloads over UDP/TCP with configurable query size, random delay, and random domains to evade detection during red…

Dynamically invoke arbitrary unmanaged code

PowerShell Remote Download Cradle Generator & Obfuscator

PowerShell Script to automatically abuse the BadSuccessor vulnerability (CVE-2025-53779)

powershell tool for VM evasion

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

Dynamically invoke arbitrary unmanaged code from managed code without PInvoke.

Simple & Powerful PowerShell Script Obfuscator

Cmd.exe Command Obfuscation Generator & Detection Test Harness