Matt Hand (matterpreter)

matterpreter

Geek Repo

Company:@preludeorg

Location:USA

Home Page:https://medium.com/@matterpreter

Twitter:@matterpreter

Github PK Tool:Github PK Tool

Matt Hand's repositories

DefenderCheck

Identifies the bytes that Microsoft Defender flags on.

Language:C#License:BSD-3-ClauseStargazers:2159Issues:43Issues:18

OffensiveCSharp

Collection of Offensive C# Tooling

Language:C#License:BSD-3-ClauseStargazers:1325Issues:38Issues:7

Shhmon

Neutering Sysmon via driver unload

Language:C#License:BSD-3-ClauseStargazers:217Issues:11Issues:0

SHAPESHIFTER

Companion PoC for the "Adventures in Dynamic Evasion" blog post

Language:C#License:BSD-3-ClauseStargazers:121Issues:9Issues:1

spotter

Targeted Payload Execution

FindETWProviderImage

Quickly search for references to a GUID in DLLs, EXEs, and drivers

Language:C#License:BSD-3-ClauseStargazers:59Issues:4Issues:0

cpuid

A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class

Language:C++License:BSD-3-ClauseStargazers:24Issues:4Issues:0

getDA.sh

Identify common attack paths to get Domain Administrator

Language:ShellStargazers:21Issues:5Issues:0

misc

Collection of things I've written on pentests to make life easier.

Language:PowerShellStargazers:15Issues:4Issues:0

StandIn

StandIn is a small .NET35/45 AD post-exploitation toolkit

Language:C#Stargazers:7Issues:2Issues:0

SharpStay

.NET project for installing Persistence

Language:C#License:GPL-3.0Stargazers:4Issues:2Issues:0

PowerSploit

PowerSploit - A PowerShell Post-Exploitation Framework

Language:PowerShellLicense:NOASSERTIONStargazers:3Issues:3Issues:0

Empire

Empire is a PowerShell and Python post-exploitation agent.

Language:PowerShellLicense:BSD-3-ClauseStargazers:2Issues:3Issues:0

openedr

Open EDR public repository

Language:C++License:NOASSERTIONStargazers:2Issues:2Issues:0

unicorn

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell attacks and the powershell bypass technique presented by David Kennedy (TrustedSec) and Josh Kelly at Defcon 18.

Language:PythonLicense:NOASSERTIONStargazers:2Issues:3Issues:0

cpuid_for_antivm

A collection of cpuid instruction implementations for anti-vm purposes.

Language:C++Stargazers:1Issues:1Issues:0

elam

A Practical example of ELAM (Early Launch Anti-Malware)

Language:CStargazers:1Issues:2Issues:0

EmPyre

A post-exploitation OS X/Linux agent written in Python 2.7

Language:PythonLicense:BSD-3-ClauseStargazers:1Issues:3Issues:0

EyeWitness

EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.

Language:PythonLicense:GPL-3.0Stargazers:1Issues:2Issues:0

ferrisetw

Basically a KrabsETW rip-off written in Rust

Language:RustLicense:NOASSERTIONStargazers:1Issues:0Issues:0

InternetCatFeeder

Raspberry Pi internet-enabled cat feeder using the PicoBorg Reverse

Language:PythonStargazers:1Issues:3Issues:0

malleable-c2

Cobalt Strike Malleable C2 Design and Reference Guide

License:GPL-3.0Stargazers:1Issues:2Issues:0

Mythic

A collaborative, multi-platform, red teaming framework

Language:PythonLicense:NOASSERTIONStargazers:1Issues:2Issues:0

Seatbelt

Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.

Language:C#License:NOASSERTIONStargazers:1Issues:2Issues:0

dnSpy

.NET debugger and assembly editor

Language:C#Stargazers:0Issues:2Issues:0

PUBG-map-hack

Map hack solution for PUBG

Language:C++License:Apache-2.0Stargazers:0Issues:2Issues:0

Rubeus

Trying to tame the three-headed dog.

Language:C#License:NOASSERTIONStargazers:0Issues:2Issues:0

SharpHound3

C# Data Collector for the BloodHound Project, Version 3

Language:C#License:GPL-3.0Stargazers:0Issues:2Issues:0

yubikey-luks

Two factor authentication for harddisk encryption

Language:ShellStargazers:0Issues:2Issues:0