Skip to content
View samratashok's full-sized avatar

Organizations

@AlteredSecurity

Block or report samratashok

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Shadow Dumper is a powerful tool used to dump LSASS memory, often needed in penetration testing and red teaming. It uses multiple advanced techniques to dump memory, allowing to access sensitive da…

C++ 572 91 Updated May 22, 2025

Yet another shellcode loader - but a sneaky one

C 26 2 Updated Apr 16, 2025

MIPS VM to execute payloads without allocating executable memory. Based on a PlayStation 1 (PSX) Emulator.

C++ 125 9 Updated Dec 6, 2024

CobaltStrike BOF - Inject ETW Bypass into Remote Process via Syscalls (HellsGate|HalosGate)

C 300 56 Updated Sep 28, 2021

Abusing Azure services over C2

C# 367 33 Updated Jan 20, 2026

MaLDAPtive is a framework for LDAP SearchFilter parsing, obfuscation, deobfuscation and detection.

C# 337 31 Updated Aug 7, 2024

A Python script to find tenant id an region from a list of domain names.

Python 19 1 Updated Jan 31, 2025

M365/Azure adversary simulation tool that generates realistic attack telemetry to help blue teams improve their detection and response capabilities.

Python 323 21 Updated Oct 12, 2025

Providing Azure pipelines to create an infrastructure and run Atomic tests.

Bicep 53 6 Updated Jul 25, 2023

Protected Process Dumper Tool

Go 586 64 Updated Aug 30, 2023

Some scripts to abuse kerberos using Powershell

PowerShell 355 46 Updated Jul 27, 2023

Timeroasting scripts by Tom Tervoort

Python 391 44 Updated Nov 11, 2025
Python 89 16 Updated Jul 28, 2022

WNF Code Execution Library Using C#

C# 110 21 Updated May 18, 2020

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs

Go 1,228 170 Updated Aug 18, 2023

Start new PowerShell without etw and amsi in pure nim

Nim 157 24 Updated Feb 14, 2022

AzureRT - A Powershell module implementing various Azure Red Team tactics

PowerShell 231 31 Updated Jun 17, 2022

Find vulnerabilities in AD Group Policy, but do it better than Grouper2 did.

C# 889 75 Updated Apr 8, 2025

Kernel mode WinDbg extension and PoCs for token privilege investigation.

C# 906 129 Updated Mar 25, 2026

A small POC to make defender useless by removing its token privileges and lowering the token integrity

C++ 689 127 Updated Jun 28, 2022

Remote Desktop entirely coded in PowerShell.

PowerShell 2,224 262 Updated Aug 1, 2024

Collection of KQL queries

1,623 379 Updated Jan 29, 2026

The swiss army knife of LSASS dumping

C 2,083 263 Updated Sep 17, 2024

PIC lsass dumper using cloned handles

C 593 109 Updated Oct 18, 2022

GoldenSAML Attack Libraries and Framework

Python 77 10 Updated Jun 5, 2024

Understand adversary tradecraft and improve detection strategies

PowerShell 711 76 Updated Mar 9, 2023

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

PowerShell 790 84 Updated Oct 29, 2022

O365 Education tools and scripts repository

PowerShell 213 398 Updated Mar 18, 2026

Azure AD RedTeam Full Enumeration Script used to query all aspects of your target Azure tenant.

PowerShell 72 19 Updated Jul 10, 2024
Next