127.0.0.1

S3cur3Th1sSh1t

Elite
@S3cur3Th1sSh1t

Pentesting, scripting and pwning!

WinPwn. Automation for internal Windows Penetrationtest / AD-Security

3.7k

Pentest-Tools.

2.4k

Amsi-Bypass-Powershell. This repo contains some Amsi Bypass methods i found on different Blog Posts.

2.2k

PowerSharpPack. PowerShell

1.7k

OffensiveVBA. This repo covers some code execution and AV Evasion methods for Macros in Office documents

1.3k

Creds. Some usefull Scripts and Executables for Pentest & Forensics

1.2k

MultiPotato. C++

536

Caro-Kann. Encrypted shellcode Injection to avoid Kernel triggered memory scans

429

SharpImpersonation. A User Impersonation tool - via Token or Shellcode injection

422

Invoke-SharpLoader. PowerShell

362

Ruy-Lopez. C

322

SharpNamedPipePTH. Pass the Hash to a named pipe for token Impersonation

310

Nim-RunPE. A Nim implementation of reflective PE-Loading from memory

295

NimGetSyscallStub. Get fresh Syscalls from a fresh ntdll.dll copy

232

SharpVeeamDecryptor. Decrypt Veeam database passwords

225

NamedPipePTH. Pass the Hash to a named pipe for token Impersonation

145

SyscallAmsiScanBufferBypass. AmsiScanBufferBypass using D/Invoke

136

Excel-Phish. Phish password protected Excel-Files

109

Nim_DInvoke. D/Invoke implementation in Nim

101

Sharp-HackBrowserData. C# binary with embeded golang hack-browser-data

100

Get-System-Techniques. PowerShell

98

RDPThiefInject. RDPThief donut shellcode inject into mstsc

88

NimShellcodeFluctuation. ShellcodeFluctuation PoC ported to Nim

77

My-starred-Repositories. This is my starred repositories including the description for each tool. Makes search/filter over them easier.

70

Nim_CBT_Shellcode. CallBack-Techniques for Shellcode execution ported to Nim

61

Invoke-Sharpcradle. Load C# Code straight to memory

56

SharpOxidResolver. IOXIDResolver from AirBus Security/PingCastle

52

BitwardenDecryptBrute. Wordlist attacks on Bitwarden data.json files

48

LDAP-Signing-Scanner. A little scanner to check the LDAP Signing state

46

SharpPolarBear. Privesc through import of Sheduled tasks + Hardlinks - CVE-2019-1069

37

S3cur3Th1sSh1t.

33

SharpByeBear. AppXSVC Service race condition - privilege escalation

29

SharpUnhooker. C# Based Universal API Unhooker - Automatically Unhook API Hives (ntdll.dll,kernel32.dll,user32.dll,and kernelbase.dll)

24

nim-strenc. string encryption in Nim

19

MailSniper. MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It can be used as a non-administrative user to search their own email, or by an administrator to search the mailboxes of every user in a domain.

19

xencrypt. A PowerShell script anti-virus evasion tool

18

SharpLigolo. C# wrapper for ligolo

17

TeamViewerDecrypt. PowerShell

17

OffensiveNim. My experiments in weaponizing Nim (https://nim-lang.org/)

16

Grouper. A PowerShell script for helping to find vulnerable settings in AD Group Policy.

16

the-book-of-secret-knowledge. A collection of awesome lists, manuals, blogs, hacks, one-liners, cli/web tools and more. Especially for System and Network Administrators, DevOps, Pentesters or Security Researchers.

15

DomainPasswordSpray. DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAREFUL NOT TO LOCKOUT ACCOUNTS!

14

EmpEISDecrypt. Decrypt Matrix42 Empirum /EIS Passwords

14

Invoke-WMI-Information. Straight forward script for WMI information gathering (local or remote)

13

AMSITrigger. The Hunt for Malicious Strings

13

SharpRDP. Remote Desktop Protocol .NET Console Application for Authenticated Command Execution

12

PrivescCheck. Privilege Escalation Enumeration Script for Windows

10

WinFor. Powershell script to execute different forensic Powershell functions / tools on a compromised host

9

AD-Attack-Defense. Active Directory Security For Red & Blue Team

9

CheckPlease. Sandbox evasion modules written in PowerShell, Python, Go, Ruby, C, C#, Perl, and Rust.

8

p0wnedShell. PowerShell Runspace Post Exploitation Toolkit

8

Shellcode-Hide. This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)

7

awesome-windows-domain-hardening. A curated list of awesome Security Hardening techniques for Windows.

7

mitmAP. 📡 A python program to create a fake AP and sniff data.

7

metasploit-framework. Metasploit Framework

7
55
Apply