Mr.Un1k0d3r

Elite
@Mr-Un1k0d3r

Mostly Red Team tools for penetration testing. My learning platform links: https://truecyber.world https://mr.un1k0d3r.world

EDRs. C

2.2k

SCShell. Fileless lateral movement tool that relies on ChangeServiceConfigA to run command

1.6k

PowerLessShell. Run PowerShell command without invoking powershell.exe

1.6k

DKMC. DKMC - Dont kill my cat - Malicious payload evasion tool

1.4k

RedTeamPowershellScripts. Various PowerShell scripts that may be useful during red team exercise

963

MaliciousMacroGenerator. Malicious Macro Generator

831

ThunderShell. Python / C# Unmanaged PowerShell based RAT

772

RedTeamCSharpScripts. C# Script used for Red Team

717

RedTeamCCode. Red Team C code repo

574

CatMyPhish. Search for categorized domain

463

.NetConfigLoader. .net config loader

355

PoisonHandler. lateral movement techniques that can be used during red team exercises

278

MaliciousClickOnceGenerator. Quick Malicious ClickOnceGenerator for Red Team

274

Windows-SignedBinary. Python

259

AMSI-ETW-Patch. Patch AMSI and ETW

251

ADHuntTool. official repo for the AdHuntTool (part of the old RedTeamCSharpScripts repo)

234

Shellcoding. Shellcoding utilities

225

WindowsDllsExport. A list of all the DLLs export in C:\windows\system32\

220

ATP-PowerShell-Scripts. Microsoft Signed PowerShell scripts

218

Cookie-and-Handle-Stealer. C or BOF file to extract WebKit master key to decrypt user cookie

210

DLLsForHackers. Dll that can be used for side loading and other attack vector.

206

Elevate-System-Trusted-BOF. C

181

AzureRedOps. Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID

178

MaliciousDLLGenerator. DLL Generator for side loading attack

176

DotnetNoVirtualProtectShellcodeLoader. load shellcode without P/D Invoke and VirtualProtect call.

172

RedTeamScripts. Repo with various Red Team scripts

148

SCT-obfuscator. Cobalt Strike SCT payload obfuscator

144

SPFAbuse. SPF are not as strong as you may think. Red Team tool to send email on behalf of your target corp

143

RemoteProcessInjection. C# remote process injection utility for Cobalt Strike

88

Base64-Obfuscator. Simple PowerShell Base64 encoder to avoid detection of your malicious payload

81

SearchIPOwner. Search public IP owner through ARIN

64

MsGraphFunzy. Scripts to interact with Microsoft Graph APIs

46

BOFCode. Bunch of BOF files

45

pentest-tools. Custom pentesting tools

26

SideChannelAttack. Side Channel script

25

LOLBAS. Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

12

blog.mr.un1k0d3r.com. Mr.Un1k0d3r.com blog

10

CVE-2021-1675. C# and Impacket implementation of PrintNightmare CVE-2021-1675/CVE-2021-34527

8

PPLDump_BOF. A faithful transposition of the key features/functionality of @itm4n's PPLDump project as a BOF.

5

openedr. Open EDR public repository

5

PowerSploit. PowerSploit - A PowerShell Post-Exploitation Framework

5

CVE-2020-1472. Test tool for CVE-2020-1472

3

impacket. Impacket is a collection of Python classes for working with network protocols.

3
43
Apply