Lists (14)
Sort Name ascending (A-Z)
Starred repositories
This repo contains the results of an internal re-write of impacket I undertook at my current company. It contains some of the IoCs found within the library
💀 Generate malicious PDF test files for testing phone-home callbacks, SSRF, XSS, NTLM credential theft, and data exfiltration in PDF viewers, converters, and web applications. Can be used with Burp…
KVC enables unsigned driver loading via DSE bypass (g_CiOptions patch, skci.dll hijack, SeCiCallbacks redirection) and PP/PPL manipulation for LSASS memory dumping on modern Windows with HVCI/VBS.
🥷 Engineering habits you already know, turned into skills Claude can run.
Ghidra is a software reverse engineering (SRE) framework
Windows kernel driver exploitation knowledge base — 28 case studies organized by driver type, grounded in real CVEs with build numbers and PoC references
A C++ proof of concept demonstrating the exploitation of Windows Protected Process Light (PPL) by leveraging COM-to-.NET redirection and reflection techniques for code injection. This PoC showcases…
Training course materials and notes related to SAP security audit and penetration testing
Proof-of-Concept tool for extracting credential material from protected sessions on modern Windows systems.
Full featured, offline Registry parser in C#
An executable to convert SOCKS5 proxy into HTTP proxy
SharpDPAPI is a C# port of some Mimikatz DPAPI functionality.
Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI
SubDominator helps you discover subdomains associated with a target domain efficiently and with minimal impact for your Bug Bounty
This repository consists of extensions, that hacktron uses to execute specific workflows in CLI.
React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)
Explanation and full RCE PoC for CVE-2025-55182
Azure Security Resources and Notes
A simple C# command-line tool to list and assert WebAuthN credentials using the Windows WebAuthN API.