Red
A tool to keep AWS pentests and red teams efficient, organized, and stealthy.
RedEye is a visual analytic tool supporting Red & Blue Team operations
Automated Red Team Infrastructure deployement using Docker
MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).
Collection of PoC and offensive techniques used by the BlackArrow Red Team
Azure Red Team tool for graphing Azure and Azure Active Directory objects
Template-Driven AV/EDR Evasion Framework
A collection of links related to VMware escape exploits
VECTR is a tool that facilitates tracking of your red and blue team testing activities to measure detection and prevention capabilities across different attack scenarios
Windows Privilege Escalation from User to Domain Admin.
Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!
A PowerShell script that checks for dangerous ACLs on system hives and shadows
A collection of various awesome lists for hackers, pentesters and security researchers
The goal of this repository is to document the most common techniques to bypass AppLocker.
Awesome note-taking apps for hackers & pentesters !
awesome list of browser exploitation tutorials
Collection of malware source code for a variety of platforms in an array of different programming languages.
AV/EDR evasion via direct system calls.
Using outlook COM objects to create convincing phishing emails without the user noticing. This project is meant for internal phishing.
A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
Research code & papers from members of vx-underground.
A centralized resource for previously documented WDAC bypass techniques