Russel Van Tuyl's repositories

merlin

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Language:GoLicense:GPL-3.0Stargazers:5379Issues:136Issues:106

go-shellcode

A repository of Windows Shellcode runners and supporting utilities. The applications load and execute Shellcode using various API calls or techniques.

Language:GoLicense:GPL-3.0Stargazers:1134Issues:25Issues:4

merlin-agent

Post-exploitation agent for Merlin

Language:GoLicense:GPL-3.0Stargazers:192Issues:11Issues:33

go-clr

A PoC package for hosting the CLR and executing .NET from Go

Language:GoLicense:WTFPLStargazers:71Issues:3Issues:2

ADPasswordHealth

A tool to evaluate the password health of Active Directory accounts.

Language:PythonLicense:GPL-3.0Stargazers:40Issues:5Issues:1

go-coff

Load and execute a common object file format (COFF) in the current process

License:BSD-3-ClauseStargazers:28Issues:5Issues:0

shellbot

Slack/Microsoft Teams notification for new Empire/Meterpreter checkins

Language:PythonLicense:GPL-3.0Stargazers:24Issues:7Issues:1

winhttp

A library to make HTTP requests with the Windows winhttp API

Language:GoLicense:GPL-3.0Stargazers:23Issues:2Issues:0

merlin-cli

gRPC client for the Merlin Server

Language:GoLicense:GPL-3.0Stargazers:20Issues:3Issues:3

scripts

Miscellaneous for various things

Language:PythonLicense:GPL-3.0Stargazers:20Issues:3Issues:1

merlin-docker

Base Docker container image for Merlin

Language:DockerfileLicense:GPL-3.0Stargazers:8Issues:2Issues:0
Language:GoLicense:GPL-3.0Stargazers:6Issues:3Issues:0

gophish

Open-Source Phishing Toolkit

Language:GoLicense:NOASSERTIONStargazers:5Issues:3Issues:0

ja3transport

Impersonating JA3 signatures

Language:GoLicense:MITStargazers:4Issues:1Issues:1

merlin-documentation

Merlin C2 Documentation Repository for https://merlin-c2.readthedocs.io

License:GPL-3.0Stargazers:3Issues:2Issues:0

FlyingAFalseFlag

Slides and Code for the BHUSA 2019 talk: Flying a False Flag

Language:C++License:GPL-3.0Stargazers:2Issues:1Issues:0

npipe

A Windows named pipe implementation written in pure Go.

Language:GoLicense:MITStargazers:2Issues:1Issues:0
Language:C#License:Apache-2.0Stargazers:1Issues:1Issues:0

go-donut

Donut Injector ported to pure Go. For use with https://github.com/TheWover/donut

Language:GoLicense:BSD-3-ClauseStargazers:1Issues:2Issues:0

keyctl

A Go-lang interface to the linux kernel keyring api

Language:GoLicense:BSD-3-ClauseStargazers:1Issues:1Issues:0

merlin-docker-mythic

Dockerfile for the Merlin container on the Mythic platform

License:GPL-3.0Stargazers:1Issues:0Issues:0

merlin-message

Messages exchanged between a Merlin Server and Agent

Language:GoLicense:GPL-3.0Stargazers:1Issues:2Issues:0

Mythic_Docker_Templates

Templates and code for Dockerfiles with images hosted at https://hub.docker.com/u/itsafeaturemythic

Language:ShellStargazers:1Issues:1Issues:0

MythicContainer

GoLang package for creating Mythic Payload Types, C2 Profiles, Translation Services, WebHook listeners, and Loggers

Language:GoLicense:BSD-3-ClauseStargazers:1Issues:1Issues:0
Language:GoStargazers:1Issues:2Issues:0

presentations

SpecterOps Presentations

RedELK

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

Language:CSSLicense:BSD-3-ClauseStargazers:1Issues:1Issues:0

SwiftBelt

A macOS enumeration tool inspired by harmjoy's Windows-based Seatbelt enumeration tool.

Language:SwiftStargazers:1Issues:1Issues:0