Skip to content
Change the repository type filter

All

    Repositories list

    • SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.
      Python
      2624100Updated Sep 8, 2025Sep 8, 2025
    • shh

      Public
      Systemd Hardening Helper - Mirror of https://github.com/desbma/shh
      Rust
      213610Updated Sep 8, 2025Sep 8, 2025
    • statx

      Public
      This program uses the statx system call to return file status (extended) in the body file format.
      C
      2000Updated Sep 5, 2025Sep 5, 2025
    • gpoParser

      Public
      gpoParser is a tool designed to extract and analyze configurations applied through Group Policy Objects (GPOs) in an Active Directory environment.
      Python
      2627200Updated Sep 1, 2025Sep 1, 2025
    • Group Policy Objects manipulation and exploitation framework
      Python
      2523210Updated Aug 20, 2025Aug 20, 2025
    • HopLa

      Public
      HopLa Burp Suite Extender plugin - Brings AI capabilities, autocompletion support, and a set of useful payloads to Burp Suite
      Java
      8177540Updated Aug 13, 2025Aug 13, 2025
    • Python
      0400Updated Aug 5, 2025Aug 5, 2025
    • Python
      32410Updated Aug 5, 2025Aug 5, 2025
    • DepFuzzer

      Public
      Python
      88401Updated Jul 31, 2025Jul 31, 2025
    • Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports Azure DevOps, GitHub and GitLab.
      Python
      1529800Updated Jul 30, 2025Jul 30, 2025
    • Python3 rewrite of AsOutsider features of AADInternals
      Python
      55400Updated Jul 23, 2025Jul 23, 2025
    • mofos

      Public
      Virtual machines manipulation framework
      Python
      69400Updated Jul 23, 2025Jul 23, 2025
    • CaptainCredz is a modular and discreet password-spraying tool.
      Python
      1013100Updated Jul 22, 2025Jul 22, 2025
    • Rust ADB client - Mirror of https://github.com/cocool97/adb_client
      Rust
      52211Updated Jul 7, 2025Jul 7, 2025
    • kcmapper

      Public
      KcMapper is a security auditing tool for Keycloak. It exports your Keycloak configuration (realms, clients, users, roles, etc.) into a Neo4j graph database. This representation enables complex relationship analysis and security auditing through a built-in interactive web UI with pre-defined queries.
      Python
      01100Updated Jul 2, 2025Jul 2, 2025
    • bbs

      Public
      bbs is a router for SOCKS and HTTP proxies. It exposes a SOCKS5 (or HTTP CONNECT) service and forwards incoming requests to proxies or chains of proxies based on the request's target. Routing can be configured with a PAC script (if built with PAC support), or through a JSON file.
      Go
      59000Updated Jun 27, 2025Jun 27, 2025
    • A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications.
      Python
      99900Updated Jun 25, 2025Jun 25, 2025
    • Python
      1715846Updated Jun 20, 2025Jun 20, 2025
    • frinet

      Public
      Frida-based tracer for easier reverse-engineering on Android, iOS, Linux, Windows and most related architectures.
      C
      4956651Updated Jun 19, 2025Jun 19, 2025
    • Windows named pipe hooking toolkit
      TypeScript
      0200Updated Jun 18, 2025Jun 18, 2025
    • IDA helper plugin to reverse engineer Objective-C code
      Python
      74100Updated Jun 12, 2025Jun 12, 2025
    • C#
      21800Updated Jun 10, 2025Jun 10, 2025
    • ROADtools

      Public
      A collection of Azure AD/Entra tools for offensive and defensive security purposes
      Python
      323100Updated Jun 9, 2025Jun 9, 2025
    • A tool to decrypt all Synology encrypted archives (SPK, PAT, ...)
      Python
      01000Updated Jun 6, 2025Jun 6, 2025
    • Proof of concepts demonstrating some aspects of the Windows kernel shadow stack mitigation.
      C
      85100Updated Jun 2, 2025Jun 2, 2025
    • ScriptCase Pre-Authenticated Remote Command Execution exploitation script (CVE-2025-47227, CVE-2025-47228).
      Python
      1700Updated May 14, 2025May 14, 2025
    • Public repository of Sigma and YARA rules created by Synacktiv
      YARA
      11200Updated May 12, 2025May 12, 2025
    • octoscan

      Public
      Octoscan is a static vulnerability scanner for GitHub action workflows.
      Go
      1822185Updated Apr 11, 2025Apr 11, 2025
    • OUned

      Public
      The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning
      Python
      1414200Updated Mar 29, 2025Mar 29, 2025
    • IPSpinner

      Public
      IPSpinner works as a local proxy that redirects requests through external services.
      Go
      57700Updated Mar 19, 2025Mar 19, 2025