Denver, CO

Sølst1c3

Elite
@s0lst1c3

eaphammer. Targeted evil twin attacks against WPA2-Enterprise networks. Indirect wireless pivots using hostile portal attacks.

2.5k

silentbridge. Silentbridge is a toolkit for bypassing 802.1x-2010 and 802.1x-2004.

277

dropengine. DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine them to create highly sophisticated payloads within seconds.

213

sentrygun. Rogue AP killer

92

evil_twin. Python script for peforming basic Evil Twin attacks on open wifi networks. Written for my tutorial on the subject.

38

grey_harvest. Scrapes the web for reliable http or https proxies and prints them to stdout. Can also be used as a python library to easily generate reliable proxies for use within Python applications.

34

SharpFinder. C#

33

awae. Python

16

rudydos. RUDY DOS attack script

15

sentrygun-server. Python

15

s0lst1c3.github.io. CSS

12

keyboardsnitch. Python

10

hostapd-eaphammer. [DEPRECATED UNTIL FURTHER NOTICE... use hostapd from s0lst1c3/eaphammer repo] Hostapd 2.6 patched with a trimmed version of hostapd-wpe for use in eaphammer

7

SharpShares. Enumerate all network shares in the current domain. Also, can resolve names to IP addresses.

7

blackhat-arsenal-tools. Official Black Hat Arsenal Security Tools Repository

6

net_creds. Sniffs sensitive data from interface or pcap

6

custom-ssh-backdoor. Custom ssh backdoor, coded in python using Paramiko

6

OffensiveCSharp. Collection of Offensive C# Tooling

5

wifitap. wifitap updated for Kali Linux

5

allthecookies. Shell

5

osx_mic_record. Small command-line utility for recording audio using the builtin MacOS webcam mic.

4

mana. Our mana toolkit for wifi rogue AP attacks and MitM - see hostapd-mana too

4

PowerSploit. PowerSploit - A PowerShell Post-Exploitation Framework

4

hello.asm. Hello world in x86 nasm

4

Empire. Empire is a PowerShell and Python post-exploitation agent.

3

zot.li. Python

3

bind_cannon. Asynchronous SSH bruteforcer written in Python 2.7 with parallel processing.

3

docker-cheat-sheet. Docker Cheat Sheet

3

GhostalService. A mass emailer with 'from' header spoofing. Python 3.4.

3

owe-lab. Python

2

theHarvester. E-mail, subdomain and people names harvester

2

Responder. Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.

2

administration. Shell

2

RomanNumerals. Simple javascript app that uses a stack based algorithm to convert roman numerals to base-10 ints.

2

MITMf. Framework for Man-In-The-Middle attacks

2

sslstrip2. SSLStrip version to defeat HSTS

2

mitmproxy. An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

2

mongodumper. Python

2

txlab-ssh-callhome-scripts. Python

2

awae-ad-setup-scripts. PowerShell

2

gamewarden. Python

1

alerting-detection-strategy-framework. A framework for developing alerting and detection strategies for incident response.

1

hostap-owe. C

1

hostapd-wpe. Modified hostapd to facilitate AP impersonation attacks

1

MimeSpray. MimeCast Password Spraying Tool

1

proxychains_autoconf. Automagically generate a reliable proxylist for your proxychains.conf file

1

impacket. Impacket is a collection of Python classes for working with network protocols.

1

benfords-law. Fraud detection script in homage of the methods used by the IRS

1

arpsiege. Python

1

smf-gremlin. SMF password cracker

1

dotify. Shell

1

dns2proxy. Offensive DNS server

1

pywificontrol. Python API to control Wi-Fi connectivity

1

bifrost. Objective-C library and console to interact with Heimdal APIs for macOS Kerberos

1

stdez. Library for things I find myself doing a lot

1

RawBytes. Simple mutable raw byte array written in C

1
56
Apply