[Bypass AV] DKMC: Malicious payload evasion tool
Don’t Kill My Cat (DKMC) Don’t kill my cat is a tool that generates obfuscated shellcode that is stored inside of polyglot images. The image is 100% valid and also...
Exploitation / Network PenTest
by do son · Published September 3, 2017 · Last modified November 4, 2024
Don’t Kill My Cat (DKMC) Don’t kill my cat is a tool that generates obfuscated shellcode that is stored inside of polyglot images. The image is 100% valid and also...
Exploitation / Network PenTest / Post Exploitation
by do son · Published September 1, 2017 · Last modified November 4, 2024
PowerStager This script creates an executable stager that downloads a selected powershell payload. Description This script creates an executable stager that downloads a selected powershell payload, loads it into memory...
Exploitation / Network PenTest / Sniffing & Spoofing
by do son · Published August 31, 2017 · Last modified October 10, 2021
P4wnP1 by MaMe82 P4wnP1 is a highly customizable USB attack platform, based on a low cost Raspberry Pi Zero or Raspberry Pi Zero W (required for HID backdoor). Introduction Since...
Exploitation / Information Gathering / Network PenTest / Vulnerability Analysis / Web Exploitation / Web Information Gathering / Web Vulnerability Analysis / WebApp PenTest / Wireless
by do son · Published August 30, 2017 · Last modified October 10, 2021
Here is a list of various security tools. Passwords Cain & Abel http://www.oxid.it/cain.html Cain & Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of...
Exploitation / Network PenTest
by do son · Published August 26, 2017 · Last modified October 10, 2021
PhEmail PhEmail is a python open source phishing email tool that automates the process of sending phishing emails as part of a social engineering test. The main purpose of PhEmail...
Exploitation / Network PenTest
by do son · Published August 26, 2017 · Last modified October 25, 2022
LNKUp LNK Data exfiltration payload generator This tool will allow you to generate LNK payloads. Upon rendering or being run, they will exfiltrate data. Info I am not responsible for...
Exploitation / Network PenTest
by do son · Published August 24, 2017 · Last modified November 4, 2024
Malicious Macro Generator Utility Simple utility design to generate obfuscated macro that also include a AV / Sandboxes escape mechanism. Download Usage Config file Example of a project config file....
Exploitation / Network PenTest
by do son · Published August 21, 2017 · Last modified November 4, 2024
UniByAv UniByAv is a simple obfuscator that take raw shellcode and generate executable that are Anti-Virus friendly. The obfuscation routine is purely writtend in assembly to remain pretty short and...
Exploitation / Network PenTest
by do son · Published August 18, 2017 · Last modified November 4, 2024
DELTA: SDN SECURITY EVALUATION FRAMEWORK What is DELTA? DELTA is a penetration testing framework that regenerates known attack scenarios for diverse test cases. This framework also provides the capability of...
Exploitation / Maintaining Access / Network PenTest
by do son · Published August 18, 2017 · Last modified November 10, 2017
EvilAbigail – Initrd encrypted root fs attack Scenario Laptop left turned off with FDE turned on Attacker boots from USB/CD/Network Script executes and backdoors initrd User returns to laptop, boots...
Exploitation / Network PenTest
by do son · Published August 18, 2017 · Last modified November 4, 2024
luckystrike a PowerShell based generator of malicious .xls documents (soon to be .doc). All your payloads are saved into a database for easy retrieval & embedding into a new or...
Exploitation / Maintaining Access / Network PenTest
by do son · Published August 17, 2017 · Last modified November 4, 2024
Intel_Inside Intel PROSet Wireless – Persistent SYSTEM Shell Implant (All Versions) (Win 7 – 64bit) Context: http://x42.obscurechannel.com/?p=378 Requirements: You have a previously acquired shell (through some other exploit) on a machine...
Office8570 Exploit toolkit CVE-2017-8570 – v1.0 Exploit toolkit CVE-2017-8570 – v1.0 is a handy python script which provides pentesters and security researchers a quick and effective way to exploit Microsoft...
Yersinia is a network tool designed to take advantage of some weaknesses in different network protocols. It pretends to be a solid framework for analyzing and testing the deployed networks...
Exploitation / Network PenTest / Sniffing & Spoofing
by do son · Published August 15, 2017 · Last modified November 4, 2024
Artemis Phishing webapp generator Getting started Gathered credentials are stored in loot.txt. Source: https://github.com/sweetsoftware/Artemis