tothi's repositories

rbcd-attack

Kerberos Resource-Based Constrained Delegation Attack from Outside using Impacket

dll-hijack-by-proxying

Exploiting DLL Hijacking by DLL Proxying Super Easily

ad-honeypot-autodeploy

Deploy a small, intentionally insecure, vulnerable Windows Domain for RDP Honeypot fully automatically.

serviceDetector

Detect whether a service is installed (blindly) and/or running (if exposing named pipes) on a remote machine without using local admin privileges.

stager_libpeconv

A basic meterpreter protocol stager using the libpeconv library by hasherezade for reflective loading

log4shell-vulnerable-app

A Basic Java Application Vulnerable to the Log4Shell RCE

azure-function-proxy

basic proxy as an azure function serverless app

Language:PythonStargazers:18Issues:2Issues:0

impacket

Impacket is a collection of Python classes for working with network protocols.

Language:PythonLicense:NOASSERTIONStargazers:13Issues:1Issues:0

malicious-service

Minimal Windows Service Template for demonstrating privilege escalation via weak service executable permissions

Language:CStargazers:10Issues:3Issues:0

steganography

Simple C++ Image Steganography tool to encrypt and hide files insde images using Least-Significant-Bit encoding.

Language:C++License:MITStargazers:5Issues:1Issues:0

sliver

Adversary Emulation Framework

Language:GoLicense:GPL-3.0Stargazers:3Issues:1Issues:0

DeviceGuardBypasses

A repository of some of my Windows 10 Device Guard Bypasses

Language:C#License:GPL-3.0Stargazers:2Issues:1Issues:0

wifipem

automated tool for extracting RADIUS public certificates from pcap files and live captures

Language:PythonLicense:GPL-3.0Stargazers:2Issues:0Issues:0

azure-function-proxy-ng

Azure Function as a Reverse Proxy (e.g. for C2 ;) )

Language:PythonStargazers:1Issues:2Issues:0
Language:CStargazers:1Issues:1Issues:0

MsgKit

A .NET library to make MSG files without the need for Outlook

Language:C#Stargazers:1Issues:1Issues:0

SharpSecDump

.Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py

Language:C#License:BSD-3-ClauseStargazers:1Issues:1Issues:0
Language:JavaScriptLicense:MITStargazers:0Issues:1Issues:0

BloodHound

Six Degrees of Domain Admin

Language:PowerShellLicense:GPL-3.0Stargazers:0Issues:1Issues:0

CrackMapExec

A swiss army knife for pentesting networks

Language:PythonLicense:BSD-2-ClauseStargazers:0Issues:1Issues:0

EDR-Preloader

An EDR bypass that prevents EDRs from hooking or loading DLLs into our process by hijacking the AppVerifier layer

Language:C++Stargazers:0Issues:1Issues:0

homeassistant-core

:house_with_garden: Open source home automation that puts local control and privacy first.

Language:PythonLicense:Apache-2.0Stargazers:0Issues:0Issues:0

ical2csv

A Python script that reads ics files and outputs their data into a csv file.

Language:PythonStargazers:0Issues:0Issues:0

NimPlant

A light-weight first-stage C2 implant written in Nim.

Language:NimLicense:MITStargazers:0Issues:1Issues:0

physmem2profit

Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely

Language:C#License:Apache-2.0Stargazers:0Issues:1Issues:0

ROADtools

A collection of Azure AD tools for offensive and defensive security purposes

Language:PythonLicense:MITStargazers:0Issues:1Issues:0

SCShell

Fileless lateral movement tool that relies on ChangeServiceConfigA to run command

Language:CStargazers:0Issues:1Issues:0

SharpSvc

SharpSvc is a simple code set to interact with the SC Manager API and is compatible with Cobalt Strike.

Language:C#Stargazers:0Issues:1Issues:0
Language:CLicense:AGPL-3.0Stargazers:0Issues:0Issues:0