Stars
Bypass Credential Guard by patching WDigest.dll using only NTAPI functions
PowerHuntShares is an audit script designed in inventory, analyze, and report excessive privileges configured on Active Directory domains.
A python port of @dafthack's MFAsweep with some added OPSEC functionality. MFAde can be used to find single-factor authentication failure points in Mircrosoft Services.
A security assessment tool for analyzing Active Directory Group Policy Objects (GPOs) to identify misconfigurations and vulnerabilities
Interactive Shell and Command Execution over Named-Pipes (SMB) for Fileless lateral movement
RFHunter is a device to find hidden Cameras at AirBNBs
a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
Remotely Enumerate sessions using undocumented Windows Station APIs
Retrieve and display information about active user sessions on remote computers. No admin privileges required.
A next generation version of enum4linux (a Windows/Samba enumeration tool) with additional features like JSON/YAML export. Aimed for security professionals and CTF players.
e(X)tensiable (Rust) Malware Toolkit: (Soon!) Full Featured Rust C2 Framework with Awesome Features!
A collection of real world AI/ML exploits for responsibly disclosed vulnerabilities
Zero shot vulnerability discovery using LLMs
Extract credentials from lsass remotely
List the ETW provider(s) in the registration table of a process.
PowerShell Constrained Language Mode Bypass
SSH3: faster and rich secure shell using HTTP/3, checkout our article here: https://arxiv.org/abs/2312.08396 and our Internet-Draft: https://datatracker.ietf.org/doc/draft-michel-ssh3/
SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Directory Web Services (ADWS) protocol.
Modern CLI for exploring vulnerability data with powerful search, filtering, and analysis capabilities.
Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows | Provides tools and Guides for Pers…
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
#1 quality TLS certs while you wait, for the discerning tester
A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.