Coldfusion's repositories
domi-owned
IBM/Lotus Domino exploitation
FacebookEnum
Facebook account enumeration using the forgotten password feature
GhostLoader
GhostLoader - AppDomainManager - Injection - 攻壳机动队
PowerShell-Suite
My musings with PowerShell
beacon
Former attempt at creating a independent Cobalt Strike Beacon
bootdoor
Former UEFI Firmware Rootkit Replicating MoonBounce / ESPECTRE
CarbonCopy
A tool which creates a spoofed certificate of any online website and signs an Executable for AV Evasion. Works for both Windows and Linux
DeepSleep
A variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC
dirsearch
Web path scanner
DNS_Request
Query DNS records.
DNSDelivery
DNSDelivery provides delivery and in memory execution of shellcode or .Net assembly using DNS requests delivery channel.
DNSExfiltrator
Data exfiltration over DNS request covert channel
extract-mfg
Extract mfg.dat and AT&T root certs from BGW210 or NVG599
FOLIAGE
Experiment on reproducing Obfuscate & Sleep
FOLIAGE-1
Public variation of FOLIAGE ( original developer )
hid-iclass
HID iClass key diversification script
impacket_static_binaries
Standalone binaries for Linux/Windows of Impacket's examples
kapc_injector
kernel to user mode APC injector
kekeo
A little toolbox to play with Microsoft Kerberos in C
minbeacon
A work in progress of constructing a minimal http(s) beacon for Cobalt Strike.
netstub
Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.
redsails
RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. DerbyCon 2017 Talk: https://www.youtube.com/watch?v=Ul8uPvlOsug
RibeyeSpecial
medium-rare
rubeus2ccache
Extracts all base64 ticket data from a rubeus /dump file and converts the tickets to ccache files for easy use with other tools.
sRDI
Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode
TitanLdr
Cobalt Strike User Defined Reflective Loader (UDRL). Check branches for different functionality.
TitanLdr-1
Public variation of Titan Loader
TransitionalPeriod
Former Multi - Ring to Kernel To UserMode Transitional Shellcode For Remote Kernel Exploits