Automated Brute-Force Login Attacks Against EAP Networks.
Repositórios
Repositórios de Tylous
Collection of Azure Tools to Pull down for Attacking an Env
A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.
My collection of dockerfiles
Ready to go Phishing Platform
FaceDancer is an exploitation tool aimed at creating hijackable, proxy-based DLLs by taking advantage of COM-based system DLL image loading
HTML smuggling is not an evil, it can be useful
Tunnel TCP connections through a file
Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods
Freeze.rs is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls written in RUST
A Post-exploitation Toolset for Interacting with the Microsoft Graph API
InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assembly execution as an alternative to Cobalt Strikes traditional fork and run execute-assembly module
Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by utilizing programmatical access in the VBA object environment to load, decrypt and execute shellcode.
A tool for generating fake code signing certificates or signing real ones
Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs
A tool to verify and create PE Checksums for Portable Executable (PE) files.
A PoC that packages payloads into output containersb to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats. Supports: ZIP, 7zip, PDF, ISO, IMG, CAB, VHD, VHDX
PoC tool to coerce Windows hosts to authenticate to other machines via MS-EFSRPC EfsRpcOpenFileRaw or other functions.
Forked extended scapy version
ScareCrow - Payload creation framework designed around EDR bypass.