10000 Nero22k's list / red_team_tools · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
View Nero22k's full-sized avatar
🙃
🙃
  • NSA
  • Fort Meade, Maryland

Highlights

  • Pro

Block or report Nero22k

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

red_team_tools

30 repositories

A BOF to enumerate system process, their protection levels, and more.

C 116 8 Updated Nov 27, 2024

An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution

C 187 29 Updated Nov 27, 2024

Indirect Dynamic Syscall, SSN + Syscall address sorting via Modified TartarusGate approach + Remote Process Injection via APC Early Bird + Spawns a sacrificial Process as target process + (ACG+Bloc…

C 679 92 Updated Mar 12, 2025

A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints

C 87 8 Updated Jan 17, 2025

Make everyone in your VLAN ASRep roastable

Python 191 23 Updated Feb 26, 2025

Just another Powerview alternative but on steroids

Python 694 69 Updated May 17, 2025

Collection of Beacon Object Files (BOF) for Cobalt Strike

C 594 85 Updated May 17, 2025

TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts

C# 1,143 127 Updated Apr 10, 2025
Python 156 25 Updated Jul 31, 2024

A Python script for creating `.lnk` (shortcut) files with embedded encoded data and packaging them into ZIP archives.

Python 28 3 Updated Jan 8, 2025

Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) PhantomThread (An evolved callstack-masking implementation)

C++ 262 34 Updated Sep 18, 2024

Evasive shellcode loader for bypassing event-based injection detection (PoC)

C++ 772 126 Updated Aug 23, 2021

Use the Netlogon Remote Protocol (MS-NRPC) to dump the target hash.

Python 49 6 Updated Feb 25, 2025

SSHD Based implant supporting tunneling mecanisms to reach the C2 (DNS, ICMP, HTTP Encapsulation, HTTP/Socks Proxies, UDP...)

Python 9D96 265 27 Updated Mar 5, 2025

Enumerate information from NTLM authentication enabled web endpoints 🔎

Python 482 71 Updated Jun 24, 2024

Python tool to Check running WebClient services on multiple targets based on @leechristensen

Python 275 26 Updated Aug 18, 2021

BrowserSnatch is a powerful browser stealer or browser data extraction tool intended to be used for ethical hacking or penetration testing.

C 255 39 Updated Mar 31, 2025

Continuous password spraying tool

Python 185 16 Updated Mar 3, 2025

An example reference design for a proposed BOF PE

C++ 166 16 Updated Apr 17, 2025
JavaScript 30 5 Updated Mar 19, 2025
Python 157 21 Updated Feb 29, 2024

🧠 The ultimate, community-curated resource for Beacon Object Files (BOFs) — tutorials, how-tos, deep dives, and reference materials.

Python 66 8 Updated Apr 24, 2025

Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data

Python 262 24 Updated May 2, 2025

Stealthier variation of Module Stomping and Module Overloading injection techniques that reduces memory IoCs. Implemented in Python ctypes

Python 116 12 Updated Sep 27, 2023

Windows remote execution multitool

Go 484 42 Updated May 6, 2025

SOCKS5 proxy tool that uses Azure Blob Storage as a means of communication.

Go 162 22 Updated Apr 29, 2025
0