This is your work, valued
MacroShop. Collection of scripts to aid in delivering payloads via Office Macros. Most are python. See http://khr0x40sh.wordpress.com for details.
408WhiteListEvasion. Collection of scripts, binaries and the like to aid in WhiteList Evasion on a Microsoft Windows Network.
128Galvatron. Powershell fork of Monohard by Carlos Ganoza P. This botnet/backdoor was designed to egress over unecrypted web using very little, but effective obfuscation. Egress over ICMP and DNS are planned as features. Lastly, the server code is designed to setup the C2 on a LAMP-esque server. The default creds are admin/admin.
40metasploit-modules. Ruby
36PowerW0rm. PowerShell
16PowerSurfer. A powershell based traffic generation scripts to simulate user activity via Internet Explorer
15ms16-032. C
9ms16_032_DLL. DLL of MS16-032 Exploit
6malwareanalysis. snippets related to malware analysis
3Mockingjay. Tests and implementation of Mockingjay technique
3SharpMockingJay. C# / .NET implementation of the local DLL Injection use case of the MockingJay EDR Bypass technique
3LNKfun. A simple LNK file parser/editor written in PS1.
3SharpeningCobaltStrike. in realtime v35/40 dotnet compiler for your linux Cobalt Strike C2. New fresh compiled and obfuscated binary for each use
3OSCP-2. Collection of things made during my OSCP journey
3talks. Files From Talks
2win-brute-logon. Crack any Microsoft Windows users password without any privilege (Guest account included)
1CVE-2024-4956. CVE-2024-4956 Python exploitation utility
1Minimalistic-offensive-security-tools. A repository of tools for pentesting of restricted and isolated environments.
1embedps. C#
1Cobalt-Strike-Aggressor-Scripts. Cobalt Strike Aggressor 插件包
1DueDLLigence. C#
1Sandboxescaperclone. Reuploading the code she removed.
1AmsiScanBufferBypass. C#
1SharpRDP. Remote Desktop Protocol .NET Console Application for Authenticated Command Execution
1sharpratworm. Automatically exported from code.google.com/p/sharpratworm
1Egress-Assess. Egress-Assess is a tool used to test egress data detection capabilities
1Aggressor-scripts. Aggressor scripts I've made for Cobalt Strike
1MS17-010. MS17-010
1CVE-2018-4878. ActionScript
1Salsa-tools. Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched
1kismetearth-net. Automatically exported from code.google.com/p/kismetearth-net
1EvilNetConnectionWMIProvider. C#
1DefenderCheck. Identifies the bytes that Microsoft Defender flags on.
1SharpSploit. SharpSploit is a .NET post-exploitation library written in C#
1NetLoader. Loads any C# binary in mem, patching AMSI and bypassing Windows Defender
1DumpsterFire. "Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events. Easily create custom event chains for Blue Team drills and sensor / alert mapping. Red Teams can create decoy incidents, distractions, and lures to support and scale their operations. Build event sequences ("narratives") to simulate realistic scenarios and generate corresponding network and filesystem artifacts.
1