galoryber's starred repositories

profiler-lateral-movement

Lateral Movement via the .NET Profiler

Language:C++Stargazers:65Issues:0Issues:0

Malware

macOS Malware Collection

License:GPL-3.0Stargazers:288Issues:0Issues:0

decode-spam-headers

A script that helps you understand why your E-Mail ended up in Spam

Language:PythonLicense:MITStargazers:528Issues:0Issues:0
Language:C#License:BSD-3-ClauseStargazers:210Issues:0Issues:0

openvasreporting

OpenVAS Reporting: Convert OpenVAS XML report files to reports

Language:PythonLicense:NOASSERTIONStargazers:122Issues:0Issues:0

PyOTI

Python library for threat intelligence

Language:PythonLicense:GPL-3.0Stargazers:74Issues:0Issues:0

fabric

fabric is an open-source framework for augmenting humans using AI. It provides a modular framework for solving specific problems using a crowdsourced set of AI prompts that can be used anywhere.

Language:PythonLicense:MITStargazers:19368Issues:0Issues:0

SharpSystemTriggers

Collection of remote authentication triggers in C#

Language:CStargazers:437Issues:0Issues:0

SharpTokenFinder

C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps

Language:C#License:MITStargazers:128Issues:0Issues:0

PastDSE

DSE bypass using a leaked cert and adjusting the current clock.

Language:CStargazers:129Issues:0Issues:0

PackMyPayload

A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats. Supports: ZIP, 7zip, PDF, ISO, IMG, CAB, VHD, VHDX

Language:PythonLicense:MITStargazers:822Issues:0Issues:0

Parasite-Invoke

Hide your P/Invoke signatures through other people's signed assemblies

Language:C#Stargazers:195Issues:0Issues:0

BobTheSmuggler

"Bob the Smuggler": A tool that leverages HTML Smuggling Attack and allows you to create HTML files with embedded 7z/zip archives. The tool would compress your binary (EXE/DLL) into 7z/zip file format, then XOR encrypt the archive and then hides inside PNG/GIF image file format (Image Polyglots).

Language:PythonLicense:MITStargazers:470Issues:0Issues:0

dot

The Deepfake Offensive Toolkit

Language:PythonLicense:BSD-3-ClauseStargazers:4020Issues:0Issues:0

Docker-OSX

Run macOS VM in a Docker! Run near native OSX-KVM in Docker! X11 Forwarding! CI/CD for OS X Security Research! Docker mac Containers.

Language:ShellLicense:GPL-3.0Stargazers:36221Issues:0Issues:0

SWH-Injector

An Injector that can inject dll into game process protected by anti cheat using SetWindowsHookEx.

Language:C++Stargazers:218Issues:0Issues:0

dnMerge

A lightweight .NET assembly dependency merger that uses dnLib and 7zip's LZMA SDK for compressing dependant assemblies.

Language:C#Stargazers:98Issues:0Issues:0

JayFinder

Find DLLs with RWX section

Language:C#Stargazers:74Issues:0Issues:0

LdrLockLiberator

For when DLLMain is the only way

Language:CLicense:MITStargazers:329Issues:0Issues:0

lolcerts

A repository of code signing certificates known to have been leaked or stolen, then abused by threat actors

Language:YARALicense:Apache-2.0Stargazers:309Issues:0Issues:0

PoolPartyBof

A beacon object file implementation of PoolParty Process Injection Technique.

Language:CStargazers:303Issues:0Issues:0

ThreadlessInject-BOF

BOF implementation of @_EthicalChaos_'s ThreadlessInject project. A novel process injection technique with no thread creation, released at BSides Cymru 2023.

Language:CLicense:MITStargazers:360Issues:0Issues:0

Evilginx2-Phishlets

Evilginx3 Phishlets version (0.2.3 & above) Only For Testing/Learning Purposes

Language:CSSStargazers:497Issues:0Issues:0

Shellcode-Injection-Techniques

A collection of C# shellcode injection techniques. All techniques use an AES encrypted meterpreter payload. I will be building this project up as I learn, discover or develop more techniques. Some techniques are better than others at bypassing AV.

Language:C#Stargazers:447Issues:0Issues:0

Handly

Abuse leaked token handles.

Language:C#License:Apache-2.0Stargazers:129Issues:0Issues:0
Language:CStargazers:1411Issues:0Issues:0

SignToolEx

Patching "signtool.exe" to accept expired certificates for code-signing.

Language:C++Stargazers:261Issues:0Issues:0
Language:CLicense:MITStargazers:241Issues:0Issues:0

ThreadlessInject

Threadless Process Injection using remote function hooking.

Language:C#License:MITStargazers:689Issues:0Issues:0

SingleDose

Generate Shellcode Loaders & Injects

Language:C#License:BSD-3-ClauseStargazers:153Issues:0Issues:0