Evilginx2-Phishlets. Evilginx3 Phishlets version (0.2.3 & above) Only For Testing/Learning Purposes
792Evilginx-Phishing-Infra-Setup. Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs
596AV-EDR-Lab-Environment-Setup. AV/EDR Lab environment setup references to help in Malware development
469HIDDENEYE-TERMUX-FIXED. Python
282CRTO-Notes. Certified Red Team Operator (CRTO) Cheatsheet and Checklist
256Offensive-COM. Research notes on Windows Component Object Model (COM) attack surface for offensive security and vulnerability research. Covers COM hijacking, elevation of privilege, DCOM lateral movement, and persistence primitives with exploitation steps. Notes were generated by Kimi K3 Swarm may contain inaccuracies.
134evilgophish. evilginx2 + gophish
18FullBypass. A tool which bypasses AMSI (AntiMalware Scan Interface) and PowerShell CLM (Constrained Language Mode) and gives you a FullLanguage PowerShell reverse shell. Feel free to modiy and DM if you find some bugs :)
15an0nud4y.github.io. Personal Security Blog
14An0nUD4Y.
12parrot-os-conky. A Conky For parrot Os
10Powershell-Tools. PowerShell
7awesome-injection. Centralized resource for listing and organizing known injection techniques and POCs
6Mindmap. This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give brief details about them
6Cobalt-Strike. Various resources to enhance Cobalt Strike's functionality and its ability to evade antivirus/EDR detection during CRTO2/CRTL exam
4ExploitMyntra. This is A working Exploit To Exploit Myntra.com Shout & Earn Refer Feature.
4AITMWorker. Proof of concept: using a Cloudflare worker for AITM attacks
4Cybersec-Talks. This Repo Contains all the resources and presentation I have done.
4ocd-mindmaps. Orange Cyberdefense mindmaps
3PreCompiled_Binaries.
3Voidgate. A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by performing on-the-fly decryption of individual encrypted assembly instructions, thus rendering memory scanners useless for that specific memory page.
3adaudit. Powershell script to do domain auditing automation
3Obfusk8. Obfusk8: lightweight Obfuscation library based on C++17 / Header Only for windows binaries
3Loki. 🧙♂️ Node JS C2 for backdooring vulnerable Electron applications
2malsrc. A collection of red team techniques.
2dittobytes. Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.
2TransactedSharpMiniDump. Implementation of b4rtiks's SharpMiniDump using NTFS transactions to avoid writting the minidump to disk and exfiltrating it via HTTPS using sockets.
2Packer_Development. C
2hookchain. HookChain: A new perspective for Bypassing EDR Solutions
2ASRepCatcher. Make everyone in your VLAN ASRep roastable
1Azure-AD-Pentest-Mindmaps. Azure mindmap for penetration tests
1itsudy. HTML
1LitterBox. sandbox approach for malware developers and red teamers to test payloads against detection mechanisms before deployment
1demo-bank. JavaScript
1wfidd.
1certipy-merged. Tool for Active Directory Certificate Services enumeration and abuse
1UltimateWDACBypassList. A centralized resource for previously documented WDAC bypass techniques
1