Will Summerhill's starred repositories

BloodHoundCustomQueries

My BloodHound custom queries

Language:MakefileStargazers:23Issues:0Issues:0

dploot

DPAPI looting remotely in Python

Language:PythonLicense:MITStargazers:382Issues:0Issues:0

pyldapsearch

Tool for issuing manual LDAP queries which offers bofhound compatible output

Language:PythonLicense:BSD-4-ClauseStargazers:47Issues:0Issues:0
Language:AssemblyLicense:GPL-3.0Stargazers:465Issues:0Issues:0

Shellcode-Hide

This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)

Language:C++License:MITStargazers:384Issues:0Issues:0

D1rkLdr

Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscall instruction address resolving at run time

Language:C++License:MITStargazers:294Issues:0Issues:0

SharpWhispers

C# porting of SysWhispers2. It uses SharpASM to find the code caves for executing the system call stub.

Language:C#Stargazers:100Issues:0Issues:0

Inline-Execute-PE

Execute unmanaged Windows executables in CobaltStrike Beacons

Language:CLicense:Apache-2.0Stargazers:613Issues:0Issues:0

CrossLinked

LinkedIn enumeration tool to extract valid employee names from an organization through search engine scraping

Language:PythonLicense:GPL-3.0Stargazers:1205Issues:0Issues:0
Language:CStargazers:1417Issues:0Issues:0

SQLRecon

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

Language:C#License:BSD-3-ClauseStargazers:606Issues:0Issues:0

Alcatraz

x64 binary obfuscator

Language:C++Stargazers:1610Issues:0Issues:0

Snaffler

a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )

Language:C#License:GPL-3.0Stargazers:1921Issues:0Issues:0

PassTheChallenge

Recovering NTLM hashes from Credential Guard

Language:CLicense:MITStargazers:318Issues:0Issues:0

sliver

Adversary Emulation Framework

Language:GoLicense:GPL-3.0Stargazers:7981Issues:0Issues:0

BOFs

Collection of beacon object files for use with Cobalt Strike to facilitate 🐚.

Language:CStargazers:163Issues:0Issues:0

CheckPlease

Sandbox evasion modules written in PowerShell, Python, Go, Ruby, C, C#, Perl, and Rust.

Language:GoLicense:GPL-3.0Stargazers:895Issues:0Issues:0

z85

ZeroMQ Base-85 Encoding library C/C++

Language:C++License:BSD-2-ClauseStargazers:55Issues:0Issues:0

FlavorTown

Various ways to execute shellcode

Language:C#License:BSD-3-ClauseStargazers:470Issues:0Issues:0

garble

Obfuscate Go builds

Language:GoLicense:BSD-3-ClauseStargazers:3722Issues:0Issues:0

Shellcode-Injection-Techniques

A collection of C# shellcode injection techniques. All techniques use an AES encrypted meterpreter payload. I will be building this project up as I learn, discover or develop more techniques. Some techniques are better than others at bypassing AV.

Language:C#Stargazers:447Issues:0Issues:0

RemotePatcher

Patch AMSI and ETW in remote process via direct syscall

Language:CStargazers:75Issues:0Issues:0

SourcePoint

SourcePoint is a C2 profile generator for Cobalt Strike command and control servers designed to ensure evasion.

Language:GoStargazers:1007Issues:0Issues:0

SigFlip

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Language:C#License:MITStargazers:1008Issues:0Issues:0

frostbyte

FrostByte is a POC project that combines different defense evasion techniques to build better redteam payloads

Language:C#Stargazers:369Issues:0Issues:0

PackMyPayload

A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats. Supports: ZIP, 7zip, PDF, ISO, IMG, CAB, VHD, VHDX

Language:PythonLicense:MITStargazers:821Issues:0Issues:0

SysWhispers3

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

Language:PythonLicense:Apache-2.0Stargazers:1211Issues:0Issues:0

SQLRecon

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

Language:C#License:BSD-3-ClauseStargazers:379Issues:0Issues:0

VX-API

Collection of various malicious functionality to aid in malware development

Language:C++License:MITStargazers:1369Issues:0Issues:0

Awesome_Malware_Techniques

This is a repository of resource about Malware techniques

Stargazers:623Issues:0Issues:0