- All languages
- Arduino
- Assembly
- Batchfile
- Boo
- C
- C#
- C++
- CMake
- CSS
- Dart
- Dockerfile
- Erlang
- F#
- Go
- HTML
- Java
- JavaScript
- Jinja
- Julia
- Jupyter Notebook
- Kotlin
- Lua
- Makefile
- Nim
- Objective-C
- Objective-C++
- Odin
- PHP
- Pascal
- Perl
- PowerShell
- Python
- Rich Text Format
- Ruby
- Rust
- SCSS
- Scala
- Shell
- Smali
- Swift
- SystemVerilog
- TypeScript
- VBA
- VBScript
- Visual Basic
- Vue
- XSLT
- YARA
- Zig
Starred repositories
Emulated Belkin WeMo devices that work with the Amazon Echo
Use the GCP testIamPermissions functionality to bruteforce and discover your permissions
A modern 64-bit position independent implant template
Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!
smbclient-ng, a fast and user friendly way to interact with SMB shares.
IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then reflective load the C# project.
Youtube as C2 channel - Control Windows systems uploading QR videos to Youtube
A Simple android remote administration tool using sockets. It uses java on the client side and python on the server side
Moriarty is designed to enumerate missing KBs, detect various vulnerabilities, and suggest potential exploits for Privilege Escalation in Windows environments.
Microsoft SharePoint Server Elevation of Privilege Vulnerability
A User Impersonation tool - via Token or Shellcode injection
A method of bypassing EDR's active projection DLL's by preventing entry point exection
My musings with PowerShell
A huge chunk of my personal notes since I started playing CTFs and working as a Red Teamer.
TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts
Threadless Process Injection using remote function hooking.
Search for potential frontable domains
Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".
DNSWatch - DNS Traffic Sniffer and Analyzer
Bypass AMSI by patching AmsiScanBuffer
A tool for enumerating potential hosts that are open to GSSAPI abuse within Active Directory networks
A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.
Tool for Active Directory Certificate Services enumeration and abuse
Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling
TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!