This is your work, valued

Mitch Hines

Elite
@m57

g0dmode @ Cyndicate Labs

dnsteal. DNS Exfiltration tool for stealthily sending files over DNS requests.

1.7k

ARDT. Akamai Reflective DDoS Tool - Attack the origin host behind the Akamai Edge hosts and DDoS protection offered by Akamai services.

265

cobaltstrike_bofs. My CobaltStrike BOFS

166

piescan. A simple fast port scanner for when you cant use Nmap on a pentest.

69

myCVT. Checkpoint Firewall Ruleset Auditor ( For the HTML exports when you do not have the object files )

39

x86_syscall_ref. An x86 linux syscall table reference tool. Handy for when writing shellcode and exploits.

35

vconfigurator. Automatic VLAN configuration tool for Linux

24

snoopbrute. Multithreaded DNS recursive host brute-force tool

13

massmailer. A simple SMTP Mass mailer program utilising open relays.

10

bigdrop. DigitalOcean python tool utilising the API for creating and managing multiple customised droplets.

9

burppy. A tool to allow you to extract fine-grained information on requests and responses that have been captured through Burp.

6

binmagic. A binary image extraction tool for identifying file structures within binary blobs and firmware images, and extracting them for for further anlysis.

4

KillTheGibson. A public version of the killthegibson.sh script mentioned in the OpNasaDrones zine.

4

freeswitch_review. A simple FreeSWITCH configuration review tool for identifying weak SIP security settings

3

EQGRP. Mirror

2

randomrepo. Repo for random stuff

2

VeraCryptThief. Extracting clear-text passwords from VeraCrypt.exe using API hooking

1

chisel. A fast TCP/UDP tunnel over HTTP

1

DomainPasswordSpray. DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAREFUL NOT TO LOCKOUT ACCOUNTS!

1

bof_helper. Beacon Object File (BOF) Creation Helper

1

JohnTheRipper. This is the official repo for John the Ripper, "Jumbo" version. The "bleeding-jumbo" branch is based on 1.9.0-Jumbo-1 which was released on May 14, 2019. An import of the "core" version of john this jumbo was based on (or newer) is found in the "master" branch (CVS: https://cvsweb.openwall.com/cgi/cvsweb.cgi/Owl/packages/john/john/src/).

1

UnmanagedPowerShell. Executes PowerShell from an unmanaged process

1

rewolf-msi-exploit. MSI NTIOLib/WinIO Local Privilege Escalation exploit

1

code-snippets. Various code snippets

1

Metaphor. Metaphor - Stagefright with ASLR bypass

1

sinkhole. The memory sinkhole

1

PayloadsAllTheThings. A list of useful payloads and bypass for Web Application Security and Pentest/CTF

1

password_cracking_rules. One rule to crack all passwords. or atleast we hope so.

1

34c3ctf. 34C3 Junior CTF pwnables

1

donut. Generates x86 and x64 position-independent shellcode that loads .NET Assemblies from memory and runs them with parameters

1

Empire. Empire is a PowerShell and Python post-exploitation agent.

1