Stars
SharpDPAPI is a C# port of some Mimikatz DPAPI functionality.
Open Source Vulnerability Management Platform
Vulnerability detection framework by Binarly's REsearch team
SharpUp is a C# port of various PowerUp functionality.
The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.
SharPyShell - tiny and obfuscated ASP.NET webshell for C# web applications
Active Directory data ingestor for BloodHound Legacy written in Rust. 🦀
PowerTools is a collection of PowerShell projects with a focus on offensive operations.
Amsi Bypass payload that works on Windwos 11
A Bind Shell Using the Fax Service and a DLL Hijack
This repo contains some Amsi Bypass methods i found on different Blog Posts.
"AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS
Bypass for PowerShell Constrained Language Mode
CVE 2025 27237 Zabbix LPE proof of concept.
Shannon Lite is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities bef…
Collection of tools that reflect the network dimension into Bloodhound's data
BlueHound - pinpoint the security issues that actually matter
SCCMHunter is a post-ex tool built to streamline identifying, profiling, and attacking SCCM related assets in an Active Directory domain.
WPair is a defensive security research tool that demonstrates the CVE-2025-36911 (eg WhisperPair) vulnerability in Google's Fast Pair protocol. This vulnerability affects millions of Bluetooth audi…
Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/).
Everything from my OSEP study.
Six Degrees of Domain Admin
Python version of the C# tool for "Shadow Credentials" attacks
Tool to audit and attack LAPS environments
Local privilege escalation from SeImpersonatePrivilege using EfsRpc.