v4nyl's starred repositories

windows

Windows inside a Docker container.

Language:ShellLicense:MITStargazers:16864Issues:107Issues:430

Checklists

Red Teaming & Pentesting checklists for various engagements

BadBlood

BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of the tool is a domain similar to a domain in the real world. After BadBlood is ran on a domain, security analysts and engineers can practice using tools to gain an understanding and prescribe to securing Active Directory. Each time this tool runs, it produces different results. The domain, users, groups, computers and permissions are different. Every. Single. Time.

Language:PowerShellLicense:GPL-3.0Stargazers:1984Issues:49Issues:7

drakvuf-sandbox

DRAKVUF Sandbox - automated hypervisor-level malware analysis system

Language:PythonLicense:NOASSERTIONStargazers:1031Issues:35Issues:283

BlueSpy

PoC to record audio from a Bluetooth device

FullPowers

Recover the default privilege set of a LOCAL/NETWORK SERVICE account

GraphStrike

Cobalt Strike HTTPS beaconing over Microsoft Graph API

onionpipe

Onion addresses for anything.

Language:GoLicense:MITStargazers:499Issues:10Issues:10
Language:PythonLicense:MITStargazers:473Issues:9Issues:0

NativeDump

Dump lsass using only Native APIs by hand-crafting Minidump files (without MinidumpWriteDump!)

UAC-BOF-Bonanza

Collection of UAC Bypass Techniques Weaponized as BOFs

Language:CLicense:GPL-3.0Stargazers:382Issues:8Issues:1

SpyGuard

SpyGuard is a forked and enhanced version of TinyCheck. SpyGuard's main objective is to detect signs of compromise by monitoring network flows transmitted by a device.

Language:PythonLicense:Apache-2.0Stargazers:373Issues:7Issues:29

elastic-container

Stand up a simple Elastic container with Kibana, Fleet, and the Detection Engine

Language:ShellLicense:Apache-2.0Stargazers:351Issues:10Issues:28

RemoteTLSCallbackInjection

Utilizing TLS callbacks to execute a payload without spawning any threads in a remote process

Language:CLicense:MITStargazers:225Issues:1Issues:1

AutoSmuggle

Utility to craft HTML or SVG smuggled files for Red Team engagements

Language:C#License:GPL-3.0Stargazers:225Issues:3Issues:0

cookie-monster

BOF to steal browser cookies & credentials

Language:CLicense:GPL-3.0Stargazers:208Issues:4Issues:6

NoArgs

NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into Windows APIs to dynamically manipulate the Windows internals on the go. This allows NoArgs to alter process arguments discreetly.

Language:C++License:MITStargazers:144Issues:2Issues:0

SymProcAddress

Zero EAT touch way to retrieve function addresses (GetProcAddress on steroids)

Handly

Abuse leaked token handles.

Language:C#License:Apache-2.0Stargazers:129Issues:2Issues:0

MultCheck

Identifies bad bytes from static analysis with any Anti-Virus scanner.

Language:GoLicense:GPL-3.0Stargazers:114Issues:0Issues:0
Language:CLicense:GPL-3.0Stargazers:98Issues:4Issues:0

pendulum

Linux Sleep Obfuscation

Language:CLicense:MITStargazers:87Issues:1Issues:0

Fairplay

Artifact monitoring that ensures fairplay

Language:PythonLicense:GPL-3.0Stargazers:66Issues:1Issues:2

unmanaged-dotnet-patch

Modify managed functions from unmanaged code

Language:C++License:MITStargazers:49Issues:11Issues:0

keebcap

Win32 keylogger that supports all (non-ime using) languages correctly

Language:PythonStargazers:34Issues:5Issues:0

Proxy_Egress_Persistence

A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies

License:Apache-2.0Stargazers:29Issues:2Issues:0

SDD

Self Delete DLL

Language:C++Stargazers:23Issues:2Issues:0

EnableWebDAVClient-BOF

Cobalt Strike Beacon Object File to enable the webdav client service on x64 windows hosts

Language:CLicense:GPL-3.0Stargazers:17Issues:1Issues:0

LdapRelayScan

Check for LDAP protections regarding the relay of NTLM authentication

Language:PythonLicense:MITStargazers:4Issues:0Issues:0

CattleStorm

Python wrapper script to interact with the BeEF (https://github.com/beefproject/beef) API and execute modules on all connected zombie browsers at the same time.