qbiguenet's starred repositories
Awesome-WAF
🔥 Web-application firewalls (WAFs) from security standpoint.
can-i-take-over-xyz
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
OffensiveCSharp
Collection of Offensive C# Tooling
defcon27_csharp_workshop
Writing custom backdoor payloads with C# - Defcon 27 Workshop
ThreatCheck
Identifies the bytes that Microsoft Defender / AMSI Consumer flags on.
SharpImpersonation
A User Impersonation tool - via Token or Shellcode injection
SharpUnhooker
C# Based Universal API Unhooker
CLRvoyance
Managed assembly shellcode generation
DuplicateDump
Dumping LSASS with a duplicated handle from custom LSA plugin
micr0_shell
micr0shell is a Python script that dynamically generates Windows X64 PIC Null-Free reverse shell shellcode.
edr_blocker
Blocks EDR Telemetry by performing Person-in-the-Middle attack where network filtering is applied using iptables. The blocked destination IP addresses are parsed based on the server name in TLS Client Hello packet and the provided blocked server name (or blocked string) list in the file.
DumpAADSyncCreds
C# implementation of Get-AADIntSyncCredentials from AADInternals, which extracts Azure AD Connect credentials to AD and Azure AD from AAD connect database.
CVE-2022-42475
An exploit for CVE-2022-42475, a pre-authentication heap overflow in Fortinet networking products
gmail-mbox-stats
gmail-mbox-stats is a simple tool to analyze Gmail MBOX file.