Numb Shiva's repositories
AmsiPEBWalkVBA
Walking the PEB in VBA
Bloodhound-Custom-Queries
Custom Query list for the Bloodhound GUI based off my cheatsheet
CPLResourceRunner
Run shellcode from resource
CrackMapExec
A swiss army knife for pentesting networks
CVE-2021-36934
C# PoC for CVE-2021-36934/HiveNightmare/SeriousSAM
ItWasAllADream
A PrintNightmare (CVE-2021-34527) Python Scanner. Scan entire subnets for hosts vulnerable to the PrintNightmare RCE
nmbshiva.github.io
website of numbshiva
PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
PrivescCheck
Privilege Escalation Enumeration Script for Windows
privilege-escalation-awesome-scripts-suite
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
RemotePotato0
Just another "Won't Fix" Windows Privilege Escalation from User to Domain Admin.
SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
Snaffler
a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
SprayingToolkit
Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficient
SyscallAmsiScanBufferBypass
AmsiScanBufferBypass using D/Invoke
SysWhispers
AV/EDR evasion via direct system calls.
threatcrowd
Query the threatcrowd api to get domain names
unDefender
Killing your preferred antimalware by abusing native symbolic links and NT paths.
XSS-Payloads
List of XSS Vectors/Payloads