-
toastnotify-bof Public
Forked from brmkit/toastnotify-bofabusing windows toast notifications for fun and user manipulation
C UpdatedMar 20, 2026 -
Outpacket Public
Forked from n00py/OutpacketThis cheatsheet maps common impacket workflows to their modern alternatives
UpdatedMar 20, 2026 -
Fritter Public
Forked from 0xROOTPLS/FritterC BSD 3-Clause "New" or "Revised" License UpdatedMar 15, 2026 -
CTRL-ESC-HOST Public
Forked from CroodSolutions/CTRL-ESC-HOSTCTRL-ESC-HOST is an assessment methodology for testing for security flaws in Kiosks and Presented Applications.
PowerShell GNU General Public License v3.0 UpdatedMar 14, 2026 -
KaplaStrike Public
Forked from kapla0011/KaplaStrikeA Cobalt Strike RL built with Crystal Palace — module overloading, NtContinue entry transfer, call stack spoofing, sleep masking, and static signature removal.
C UpdatedMar 14, 2026 -
malicious-pdf Public
Forked from jonaslejon/malicious-pdfGenerate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator
Python BSD 2-Clause "Simplified" License UpdatedFeb 22, 2026 -
defender_overview Public
Forked from HackingLZ/defender_overviewOverview of MS Defender
HTML UpdatedFeb 19, 2026 -
unwaf Public
Forked from mmarting/unwafUnwaf is a Go tool designed to help identify WAF bypasses using passive techniques, such as: SPF records and DNS history. By default, Unwaf will check SPF records.
Go GNU General Public License v3.0 UpdatedFeb 17, 2026 -
-
lnk-it-up Public
Forked from wietze/lnk-it-upProject for generating and identifying deceptive LNK files.
Python GNU General Public License v3.0 UpdatedFeb 12, 2026 -
BOF_ExecuteAssembly Public
Forked from NtDallas/BOF_ExecuteAssemblyBeacon Object File for Cobalt Strike that executes .NET assemblies in beacon with evasion techniques.
C++ UpdatedDec 21, 2025 -
-
EntraMFACheck Public
Forked from AlexLinov/EntraMFACheckIdentify Azure AD resources that issue tokens without MFA enforcement using the ROPC grant flow.
Python MIT License UpdatedNov 10, 2025 -
SilentButDeadly Public
Forked from loosehose/SilentButDeadlySilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using Windows Filtering Platform (WFP). This version fo…
C UpdatedNov 3, 2025 -
teams-cookies-bof Public
Forked from TierZeroSecurity/teams-cookies-bofBOF to steal Teams cookies
C GNU General Public License v3.0 UpdatedNov 2, 2025 -
execute-assembly-pico Public
Forked from ofasgard/execute-assembly-picoA PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.
C GNU General Public License v2.0 UpdatedOct 21, 2025 -
InlineExecuteEx Public
Forked from 0xTriboulet/InlineExecuteExA BOF that's a BOF Loader
C++ Apache License 2.0 UpdatedOct 16, 2025 -
wifi-client-isolation-bypass Public
Forked from Pulse-Security/wifi-client-isolation-bypassBypass WiFi client isolation on Open and WPA2-PSK networks
Python UpdatedOct 14, 2025 -
ClickForClickOnce Public
Forked from whokilleddb/ClickForClickOnceClickForClickOnce - Generate configurable clickonce payloads
-
-
OmniProx Public
Forked from ZephrFish/OmniProxIP Rotation from different providers - Like FireProx but for GCP, Azure, Alibaba and CloudFlare
Python GNU General Public License v3.0 UpdatedSep 28, 2025 -
WerDump Public
Forked from M1ndo/WerDumpA Beacon Object File (BOF) for Havoc/CS to Bypass PPL and Dump Lsass
C UpdatedSep 22, 2025 -
AIpayloads Public
Forked from joey-melo/payloadsPayloads for AI Red Teaming and beyond
-
ldap_bofs Public
Forked from garrettfoster13/ldap_bofsRandom BOFs for LDAP tradecraft
-
DotnetNoVirtualProtectShellcodeLoader Public
Forked from Mr-Un1k0d3r/DotnetNoVirtualProtectShellcodeLoaderload shellcode without P/D Invoke and VirtualProtect call.
C# UpdatedSep 2, 2025 -
ChromeAlone Public
Forked from praetorian-inc/ChromeAloneA tool to transform Chromium browsers into a C2 Implant
JavaScript Apache License 2.0 UpdatedAug 5, 2025 -
getlapsbof Public
Forked from SavSanta/getlapsbofBeacon Object File (BOF) to retrieve and decrypt the the LAPSv2 password from the Windows Active Directory and Microsoft Azure/Entra Active Directory.
-
Crystal-Loaders Public
Forked from rasta-mouse/Crystal-LoadersA small collection of Crystal Palace PIC loaders designed for use with Cobalt Strike
C GNU General Public License v3.0 UpdatedJul 26, 2025 -
-
RAIWhateverTrigger Public
Forked from klezVirus/RAIWhateverTriggerLocal SYSTEM auth trigger for relaying - X
C MIT License UpdatedJul 22, 2025

