64 results for “topic:red-team-engagement”
Adversary Emulation Framework
Work in progress...
Collection of PowerShell functions a Red Teamer may use in an engagement
Work in progress...
PHP shells that work on Linux OS, macOS, and Windows OS.
Work in progress...
Work in progress...
DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.
Penetration testing utility and antivirus assessment tool.
PowerShell scripts for communicating with a remote host.
bof-launcher - a library for loading, executing and in-memory masking BOFs on Windows (x64, x86) and Linux (x64, x86, aarch64, arm). Ready to use in C/Zig/Rust/Go/C++ applications.
DART is a test documentation tool created by the Lockheed Martin Red Team to document and report on penetration tests, especially in isolated network environments.
Bypass 4xx HTTP response status codes and more. The tool is based on Python Requests, PycURL, and HTTP Client.
A comprehensive modern architecture model is proposed to integrate platform solutions and tooling to support a professional Red Team.
Tool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF) via Syswhispers2
Learn how to set up a fake authentication web page on a fake WiFi network.
Tool for working with Indirect System Calls in Cobalt Strike's Beacon Object Files (BOF) using SysWhispers3 for EDR evasion
This script is designed to help expedite a web application assessment by automating some of the assessment steps (e.g., running nmap, sublist3r, metasploit, etc.)
Windows OS keylogger with a hook mechanism (i.e. with a keyboard hook procedure).
JAR, Java, and JSP shells that work on Linux OS, macOS, and Windows OS.
Monarch - The Adversary Emulation Toolkit
wmiexec2.0 is the same wmiexec that everyone knows and loves (debatable). This 2.0 version is obfuscated to avoid well known signatures from various AV engines. It also has a handful of additional built in modules to help automate some common tasks on Red team engagements.
Jira Secret Hunter - Helps you find credentials and sensitive contents in Jira tickets
Simple API for storing all incoming XSS requests and various XSS templates.
Squatm3 is a python tool designed to enumerate available domains generated modifying the original domain name through different techniques
This repo will contain some basic pentest/RT commands.
Phishing mobile application made in React Native for both Android and iOS devices.
backdoor that uses dns to communicate
command control framework
Search Google Dorks like Chad. / Broken link hijacking tool.