H4xl0r's repositories
AceLdr
Cobalt Strike UDRL for memory scanner evasion.
bkcrack
Crack legacy zip encryption with Biham and Kocher's known plaintext attack.
CVE-2022-3699
Lenovo Diagnostics Driver EoP - Arbitrary R/W
D4TA-HUNTER
GUI Osint Framework with Kali Linux
dismember
:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.
evilgophish
evilginx2 + gophish
Havoc
The Havoc Framework.
jscythe
Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.
KeeFarceReborn
A standalone DLL that exports databases in cleartext once injected in the KeePass process.
laZzzy
laZzzy is a shellcode loader, developed using different open-source libraries, that demonstrates different execution techniques.
lenovo_exec
CVE-2022-3699 with arbitrary kernel code execution capability
Mangle
Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs
MHDDoS
Best DDoS Attack Script Python3, (Cyber / DDos) Attack With 56 Methods
OSRipper
AV evading OSX Backdoor and Crypter Framework
prefetch-hash-cracker
A small util to brute-force prefetch hashes
ProtectMyTooling
Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts watermarking, IOCs collection & PE Backdooring. You feed it with your implant, it does a lot of sneaky things and spits out obfuscated executable.
pycrypt
Python Based Crypter That Can Bypass Any Kinds Of Antivirus Products
pyFlipper
Unoffical Flipper Zero cli wrapper written in Python
Sandman
Sandman is a NTP based backdoor for red team engagements in hardened networks.
Shoggoth
Shoggoth: Asmjit Based Polymorphic Encryptor
SilentMoonwalk
PoC Implementation of a fully dynamic call stack spoofer
TerraLdr
A Payload Loader Designed With Advanced Evasion Features
toxssin
An XSS exploitation command-line interface and payload generator.
usbsas
Tool and framework for securely reading untrusted USB mass storage devices.
vucsa
Vulnerable Client-Server Application (VuCSA) is made for learning/presenting how to perform penetration tests of non-http thick clients. It is written in Java (with JavaFX graphical user interface).
wa-tunnel
Tunneling Internet traffic over Whatsapp
WindowSpy
WindowSpy is a Cobalt Strike Beacon Object File meant for targeted user surveillance.
yaralyzer
Visually inspect and force decode YARA and regex matches found in both binary and text data. With Colors.