Sr. Penetration Tester / Red Team Operator, author of the Pentester’s Promiscuous Notebook
usbrip. Tracking history of USB events on GNU/Linux
1.2kPPN. Pentester's Promiscuous Notebook
540DivideAndScan. Divide full port scan results and use it for targeted Nmap runs
333WeaponizeKali.sh. Collection of extra pentest tools for Kali Linux
126MirrorDump. Another LSASS dumping tool that uses a dynamically compiled LSA plugin to grab an lsass handle and API hooking for capturing the dump in memory
105OffensivePipeline. OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.
88dotfiles-linux. My dotfiles for Linux boxes
57BOFs. Beacon Object Files (not Buffer Overflows)
57peas. Modified version of PEAS client for offensive operations
44RemoteRegSave. A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host
41dotfiles-windows. My dotfiles for Windows boxes
31CrackMapExec. A swiss army knife for pentesting networks
26aes256m-cracker. :closed_lock_with_key::hammer: Cracking training version of AES-256 (PoC)
24exfiltrate. exfiltration/infiltration toolkit
23PCredz. This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP, IMAP, etc from a pcap file or from a live interface.
19snovvcrash.github.io. HTML
16KrbRelayUp. KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).
14daf-generator. Simple Delayed Auditory Feedback (DAF) generator. An anti-stuttering tool
13libcoders. File compression library | Shennon | Fano | Huffman | Bigram Huffman | Adaptive Huffman | Arithmetic coding
13impacket. Impacket is a collection of Python classes for working with network protocols.
13gateway-finder-imp. Tool to identify routers on the local LAN and paths to the Internet
8SilentHound. Quietly enumerate an Active Directory Domain via LDAP parsing users, admins, groups, etc.
8BitMono. Unlock new level of security with BitMono. Advanced code obfuscation that protects your intellectual property like never before. Try now!
8xakepru. Здесь лежат материалы, фигурирующие в моих статьях для ][
8nac_bypass. Script collection to bypass Network Access Control (NAC, 802.1x)
8HavocModules. Modules used by the Havoc Framework
7mini-shell. Simplified assembly implementation of Linux shell based on the "fork-exec-wait" concept
7randomness-test. Series of NIST randmoness tests for binary sequence validation
6DNSlivery. Easy files and payloads delivery over DNS
6windapsearch. Python script to enumerate users, groups and computers from a Windows domain through LDAP queries
6TrustVisualizer. Python script that takes new output from Get-DomainTrustMapping .csvs and outputs graphml. Based on DomainTrustExplorer.
5zwf-injector. Zero-width fingerprint injector extension for Chrome
4physmem2profit. Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely
4Rubeus. Trying to tame the three-headed dog.
4htb-write-ups-bot. Telegram bot for pillaging @IppSec's and 0xdf's HackTheBox write-ups
4snovvcrash.
3Havoc. The Havoc Framework.
3ADExplorerSnapshot.py. ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound, and also supports full-object dumping to NDJSON.
3webpage2html. save/convert web pages to a standalone editable html file for offline archive/view/edit/play/whatever
3RunOF. C#
3DecryptRecoveryLAPS_RPC. A way to maintain long-term access to Windows LAPS for lateral movement in AD via installing an Offensive LAPS RPC backdoor on a DC.
3Being-A-Good-CLR-Host. C
2StandIn. StandIn is a small .NET35/45 AD post-exploitation toolkit
2powerview.py. Just another Powerview alternative
2fat12-fat16-manager. Tiny command line tool which lets you do trivial operations within a FAT12/FAT16 disk image
2MiniDump. C# Lsass parser
2pywhisker. Python version of the C# tool for "Shadow Credentials" attacks
2hackthebox-writeups. Writeups for HacktheBox 'boot2root' machines
2PowerGraph. A samurai has no goal, only the graph
1dotfiles-macos.
1shor. C++
1LibCoders-GUI. File compression library (includes 6 algorithms) with Qt GUI
1