banananananana's starred repositories

OSINT-Framework

OSINT Framework

Language:JavaScriptLicense:MITStargazers:6875Issues:450Issues:159

Blackbone

Windows memory hacking library

GOAD

game of active directory

Language:PowerShellLicense:GPL-3.0Stargazers:4522Issues:74Issues:165

hayabusa

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

Language:RustLicense:GPL-3.0Stargazers:2018Issues:42Issues:597

send-my

Upload arbitrary data via Apple's Find My network.

Language:CLicense:AGPL-3.0Stargazers:1769Issues:41Issues:9

Hob0Rules

Password cracking rules for Hashcat based on statistics and industry patterns

CS-Situational-Awareness-BOF

Situational Awareness commands implemented using Beacon Object Files

Language:CLicense:GPL-2.0Stargazers:1158Issues:37Issues:33

HardHatC2

A C# Command & Control framework

Language:C#License:BSD-3-ClauseStargazers:915Issues:17Issues:14

ja4

JA4+ is a suite of network fingerprinting standards

Language:RustLicense:NOASSERTIONStargazers:735Issues:19Issues:60

certsync

Dump NTDS with golden certificates and UnPAC the hash

Language:PythonLicense:MITStargazers:605Issues:3Issues:12

Dirty-Vanity

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vanity-a-new-approach-to-code-injection--edr-bypass-28417

Nemesis

An offensive data enrichment pipeline

Language:PythonLicense:NOASSERTIONStargazers:550Issues:9Issues:9

emploleaks

An OSINT tool that helps detect members of a company with leaked credentials

PPLBlade

Protected Process Dumper Tool

bluffs

Bluetooth Forward and Future Secrecy Attacks and Defenses (BLUFFS) [CVE 2023-24023]

Language:PythonLicense:MITStargazers:468Issues:14Issues:3

Redeye

Redeye is a tool intended to help you manage your data during a pentest operation

Language:JavaScriptLicense:BSD-3-ClauseStargazers:455Issues:9Issues:13

KRBUACBypass

UAC Bypass By Abusing Kerberos Tickets

Chimera

Automated DLL Sideloading Tool With EDR Evasion Capabilities

Language:PythonLicense:MITStargazers:443Issues:7Issues:4

NimExec

Fileless Command Execution for Lateral Movement in Nim

Language:NimLicense:MITStargazers:358Issues:2Issues:0

galah

Galah: An LLM-powered web honeypot. Wasting attackers' time with faker-than-ever HTTP responses!

Language:GoLicense:Apache-2.0Stargazers:316Issues:6Issues:6

BokuLoader

A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!

Language:CLicense:MITStargazers:312Issues:5Issues:0

awskillswitch

Lambda function that streamlines containment of an AWS account compromise

Language:GoLicense:Apache-2.0Stargazers:309Issues:4Issues:0

LightsOut

Generate an obfuscated DLL that will disable AMSI & ETW

Language:PythonLicense:GPL-3.0Stargazers:307Issues:6Issues:1

Trawler

PowerShell script to help Incident Responders discover potential adversary persistence mechanisms.

Language:PowerShellLicense:MITStargazers:298Issues:2Issues:11

WMIExec

Set of python scripts which perform different ways of command execution via WMI protocol.

Language:PythonStargazers:157Issues:3Issues:0

Mindmaps

Azure mindmap for penetration tests

License:GPL-3.0Stargazers:150Issues:5Issues:0

Freeze

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

Language:GoLicense:MITStargazers:73Issues:2Issues:5

prebellico

Passive internal reconnaissance tool

Language:PythonLicense:Apache-2.0Stargazers:67Issues:11Issues:13

tricard

Tricard - Malware Sandbox Fingerprinting

Language:C++License:UnlicenseStargazers:19Issues:1Issues:0