R K

Nimplant : A Cross-Platform Implant Written In Nim

Nimplant is a cross-platform (Linux & Windows) implant written in Nim as a fun project to learn about Nim and…

4 years ago

Http-Request-Smuggling : HTTP Request Smuggling Detection Tool

Http-Request-Smuggling is a high severity vulnerability which is a technique where an attacker smuggles an ambiguous HTTP request to bypass…

4 years ago

AlanFramework : A Post-Exploitation Framework

AlanFramework is a post-exploitation framework useful during red-team activities. Changelog 3.0.0 - 15/05/2021 Renamed agent shell quit command to exitImplemented agent migration via migrate commandFixed…

4 years ago

Karton : Distributed Malware Processing Framework Based On Python, Redis And MinIO

Karton is a robust framework for creating flexible and lightweight malware analysis backends. It can be used to connect malware* analysis systems into a…

4 years ago

Wsh : Web Shell Generator And Command Line Interface

wsh (pronounced woosh) is a web shell generator and command line interface. This started off as just an http client…

4 years ago

Jarm : Active Transport Layer Security (TLS) server fingerprinting tool

JARM is an active Transport Layer Security (TLS) server fingerprinting tool. JARM fingerprints can be used to: Quickly verify that…

4 years ago

UnhookMe : An Universal Windows API Resolver And Unhooker Addressing Problem Of Invoking Unmonitored System Calls From Within Of Your Red Teams Malware

UnhookMe is a Universal Windows API Resolver And Unhooker Addressing Problem Of Invoking Unmonitored System Calls From Within Of Your…

4 years ago

Sigurlfind3R : A Reconnaissance Tool To Fetch URLs From AlienVault’s OTX

Sigurlfind3R is a passive reconnaissance tool, it fetches known URLs from AlienVault's OTX, Common Crawl, URLScan, Github and the Wayback Machine. Usage sigurlfind3r -h This will…

4 years ago

ADCSPwn : A Tool To Escalate Privileges In An Active Directory Network By Coercing Authenticate From Machine Accounts And Relaying To The Certificate Service

ADCSPwn is a tool to escalate privileges in an active directory network by coercing authenticate from machine accounts (Petitpotam) and…

4 years ago

Php-Jpeg-Injector : Injects Php Payloads Into Jpeg Images

Php-Jpeg-Injector Injects php payloads into jpeg images. Related to this post. Exploiting PHP-GD Image Create From jpeg() Function Proof-of-concept to exploit…

4 years ago