Stars
Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.
A simple script to decrypt stored passwords from the Oracle SQL Developer IDE
A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.
xforcered / SoaPy
Forked from logangoins/SoaPySoaPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) from Linux hosts.
Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework
Tamper Active Directory user attributes to collect their hashes with MS-SNTP
Palo Alto Networks PAN-OS 身份验证绕过漏洞批量检测脚本(CVE-2025-0108)
Active Directory data ingestor for BloodHound Community Edition written in Rust. 🦀
A small set of Beacon Object Files (BOFs) that I developed over the time with a Magic: The Gathering theme.
Easy logging and screen capturing for Tmux.
Stand up a simple Elastic container with Kibana, Fleet, and the Detection Engine
A Python based tool to convert custom queries from Legacy BloodHound to BloodHound CE format, with the option to directly upload them to the API or save them to a file for later use.
This repository contains complete resources and coding practices for malware development using Rust 🦀.
Custom Queries - Brought Up to BH4.1 syntax
Check for LDAP protections regarding the relay of NTLM authentication
COM ViewLogger — new malware keylogging technique
LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113
sandbox approach for malware developers and red teamers to test payloads against detection mechanisms before deployment
👻 Ghostty is a fast, feature-rich, and cross-platform terminal emulator that uses platform-native UI and GPU acceleration.
Run PowerShell command without invoking powershell.exe