There are 13 repositories under exfiltration topic.
GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems
Transmits AM radio on computers without radio transmitting hardware.
CloakifyFactory - Data Exfiltration & Infiltration In Plain Sight; Convert any filetype into list of everyday strings, using Text-Based Steganography; Evade DLP/MLS Devices, Defeat Data Whitelisting Controls, Social Engineering of Analysts, Evade AV Detection
PacketWhisper: Stealthily exfiltrate data and defeat attribution using DNS queries and text-based steganography. Avoid the problems associated with typical DNS exfiltration methods. Transfer data between systems without the communicating devices directly connecting to each other or to a common endpoint. No need to control a DNS Name Server.
Awesome CSIRT is an curated list of links and resources in security and CSIRT daily activities.
This repo contains my own Ducky/BadUSB scripts, related PowerShell scripts and other Flipper Zero related stuff.
Owlyshield is an EDR framework designed to safeguard vulnerable applications from potential exploitation (C&C, exfiltration and impact).
A Powerful Penetration Tool For Automating Penetration Tasks Such As Local Privilege Escalation, Enumeration, Exfiltration and More... Use Or Build Automation Modules To Speed Up Your Cyber Security Life
CredPhish is a PowerShell script designed to invoke legitimate credential prompts and exfiltrate passwords over DNS.
Bounces when a fish bites - Evilginx database monitoring with exfiltration automation
Drive-by data exfiltration using open WiFi networks & DNS requests
Search for Unix binaries that can be exploited to bypass system security restrictions.
Ultrasonic networking - Transmitting TCP/IP via Ultrasound
:wave: Stealthy data exfiltration via IPv6 covert channel
A collection of data exfiltration scripts for Red Team assessments.
DriveFS Sleuth is a Python tool that automates investigating Google Drive File Stream disk artifacts, the tool has been developed based on research that has been performed by mounting different scenarios and noting down the changes in the Google Drive File Stream disk artifacts.
Transferring Backdoor Payloads with BMP Image Pixels
Advanced Telegram x Discord C2, great for data Exfitration and Network evasion 🔷
Allows invisible watermarking of text and invisible encrypted messages. Uses 17 different invisible characters as HEX + delimiter. Includes encoder, decoder, spammer and other tools.
Testing platform for covert data exfiltration techniques where sensitive documents are embedded into vector representations and tunneled out under the guise of legitimate RAG operations — bypassing traditional security controls and evading detection through semantic obfuscation.
Transferring Backdoor Payload by BSSID and Wireless traffic
Play audio files (.wav) via the system bus of your computer and pickup with an AM radio. See youtube link for example.
transmit cs beacon (shellcode) over self-made dns to avoid anti-kill and AV
Offline command line tool that searches for GTFOBins binaries that can be used to bypass local security restrictions in misconfigured systems.
Open source platform for covert data exfiltration operations, supporting all device types: computers, servers, mobile phones, tablets, pen drives and photo cameras.
Find what egress ports are allowed
Exfiltration based on custom X509 certificates