This is your work, valued
Pentest-and-Development-Tips. A collection of pentest and development tips
1.1kHomework-of-Python. Python codes of my blog.
412Homework-of-C-Language. C/C++ code examples of my blog.
408Worse-PDF. Turn a normal PDF file into malicious.Use to steal Net-NTLM Hashes from windows machines.
344Eventlogedit-evtx--Evolution. Remove individual lines from Windows XML Event Log (EVTX) files
272List-RDP-Connections-History. Use powershell to list the RDP Connections History of logged-in users or all users
261Inject-dll-by-APC. Asynchronous Procedure Calls
247Javascript-Backdoor. Learn from Casey Smith @subTee
238Invoke-BuildAnonymousSMBServer. Use to build an anonymous SMB file server.
231pyKerbrute. Use python to perform Kerberos pre-auth bruteforcing
210Homework-of-C-Sharp. C Sharp codes of my blog.
192msbuild-inline-task.
187CLR-Injection. Use CLR to inject all the .NET apps
184SharpRDPCheck. Use to check the valid account of the Remote Desktop Protocol(Support plaintext and ntlmhash)
166Inject-dll-by-Process-Doppelganging. Process Doppelgänging
164backup-3gstudent.github.io. old blog
152Smbtouch-Scanner. Automatically scan the inner network to detect whether they are vulnerable.
138ntfsDump. Use to copy a file from an NTFS partitioned volume by reading the raw volume and parsing the NTFS structures.
119Homework-of-Powershell. powershell codes of my blog.
105HiddenNtRegistry. Use NT Native Registry API to create a registry that normal user can not query.
93Use-COM-objects-to-bypass-UAC. C++
91Windows-EventLog-Bypass. Use subProcessTag Value From TEB to identify Event Log Threads
88pyXSSPlatform. Used to build an XSS platform on the command line.
803gstudent.github.io. Blog
79Office-Persistence. Use powershell to test Office-based persistence methods
76Windows-User-Clone. Create a hidden account
75APT34-Jason. Use to perform Microsoft exchange account brute-force.
73CreateRemoteThread. From 32-bit process to 64-bit process
69bitsadminexec. Use bitsadmin to maintain persistence and bypass Autoruns
67CVE-2017-8464-EXP. Support x86 and x64
66Hook-PasswordChangeNotify. Stealing passwords every time they change
66Code-Execution-and-Process-Injection. Powershell to CodeExecution and ProcessInjection
65test. just test
65Shellcode-Generater. No inline asm,support x86/x64
65PasswordFilter. 2 ways of Password Filter DLL to record the plaintext password
65Dump-Clear-Password-after-KB2871997-installed. PowerShell
62COM-Object-hijacking. use COM Object hijacking to maintain persistence.(Hijack CAccPropServicesClass and MMDeviceEnumerator)
61NinjaCopy. Powershell to copy ntds.dit
61signtools. From Windows SDK
59ewsManage. My exercise of using Exchange Web Service(EWS)
56From-System-authority-to-Medium-authority. Penetration test
56Bypass-Windows-AppLocker. C
55Waitfor-Persistence. Use Waitfor.exe to maintain persistence
55Winpcap_Install. Auto install WinPcap on Windows(command line)
55Homework-of-Go. Go code examples of my blog.
51PNG-Steganography. Steganography Payload
47easBrowseSharefile. Use to browse the share file by eas(Exchange Server ActiveSync)
46Eventlogedit-evt--General. Remove individual lines from Windows Event Viewer Log (EVT) files
45GadgetToJScript. (Small change to make it easier to test the payload and combine it with SILENTTRINITY.)A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS based scripts.
43Bypass-McAfee-Application-Control--Code-Execution. source&exe
39Smallp0wnedShell. Small modification version of p0wnedShell
39ListInstalledPrograms. List the programs that the current Windows system has installed
37GetExpiredDomains. Search for available domain from expireddomains.net
36AutoIt-Keylogger. AutoIt
35fuzzbunch. NSA finest tool
32Use-msxsl-to-bypass-AppLocker. Learn from Casey Smith@subTee
29p0wnedShell-DarkVersion. Add my own POC to test Visual Studio trick to run code when building
22Writeup. interesting analysis
16LaZagne. Credentials recovery project
13