Skip to content
View captain-woof's full-sized avatar
๐Ÿค”
๐Ÿค”

Block or report captain-woof

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Tools and technical write-ups describing attacking techniques that rely on concealing code execution on Windows

C 206 28 Updated Aug 12, 2022

BadAssMacros - C# based automated Malicous Macro Generator.

C# 409 82 Updated Jan 8, 2022

This repo covers some code execution and AV Evasion methods for Macros in Office documents

VBA 1,213 226 Updated Jan 27, 2022

A repository with my notable code snippets for Offensive Security's PEN-300 (OSEP) course.

C# 1,238 440 Updated Jan 4, 2024

Collection of UAC Bypass Techniques Weaponized as BOFs

C 488 64 Updated Feb 21, 2024

Weaponizing for privileged file writes bugs with windows problem reporting

C++ 218 36 Updated May 10, 2022

macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other formats for pentest, demo, and social engineering assessmentsโ€ฆ

Python 2,230 412 Updated Aug 15, 2024

A C++ header-only HTTP/HTTPS server and client library

C++ 13,981 2,401 Updated Mar 25, 2025

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

C++ 82 8 Updated Mar 9, 2025

Get up and running with Llama 3.3, DeepSeek-R1, Phi-4, Gemma 3, and other large language models.

Go 134,821 11,168 Updated Mar 26, 2025

Ollama Python library

Python 7,052 630 Updated Mar 20, 2025
C++ 36 4 Updated Oct 26, 2023

WMI virus, because funny

C 272 53 Updated Jan 29, 2025

Fileless lateral movement tool that relies on ChangeServiceConfigA to run command

C 1,476 247 Updated Jul 10, 2023

Open-source Windows and Office activator featuring HWID, Ohook, TSforge, KMS38, and Online KMS activation methods, along with advanced troubleshooting.

Batchfile 127,615 12,441 Updated Mar 15, 2025

Payload Generation Framework

VBA 1,846 361 Updated Aug 21, 2024

A cross-platform assistant for creating malicious MS Office documents. Can hide VBA macros, stomp VBA code (via P-Code) and confuse macro analysis tools. Runs on Linux, OSX and Windows.

C# 2,158 399 Updated Dec 27, 2023

JScript RAT

Python 99 26 Updated Sep 27, 2020

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)

Python 1,103 135 Updated May 25, 2024

Exploitation paths allowing you to (mis)use the Windows Privileges to elevate your rights within the OS.

2,096 283 Updated Feb 24, 2023

Just another Powerview alternative

Python 595 63 Updated Mar 25, 2025

Python script to enumerate users, groups and computers from a Windows domain through LDAP queries

Python 855 153 Updated Apr 20, 2022

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

Python 4,609 725 Updated Mar 20, 2025

This repo contains some Amsi Bypass methods i found on different Blog Posts.

1,862 307 Updated Nov 28, 2024

Identifies the bytes that Microsoft Defender / AMSI Consumer flags on.

C# 1,161 140 Updated Jun 1, 2024

"Golden" certificates

C# 661 109 Updated Aug 17, 2024

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares

PowerShell 173 22 Updated Feb 5, 2023

The PoCs source code for the "Java(Script) Drive-By, Hacking Without 0days" blog post.

HTML 10 1 Updated Nov 1, 2024

.NET IPv4/IPv6 machine-in-the-middle tool for penetration testers

C# 2,673 459 Updated Aug 6, 2024
Next
Showing results