This is a GRE PoC code for Talks: From Spoofing to Tunneling: New Red Team's Networking Techniques for Initial Access and Evasion
☆98Aug 23, 2025Updated 9 months ago
Alternatives and similar repositories for GREtunnel-scanner
Users that are interested in GREtunnel-scanner are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Section-based payload obfuscation technique for x64☆64Aug 8, 2024Updated last year
- Neo4LDAP is a query and visualization tool focused on Active Directory environments. It combines LDAP syntax with graph-based data analys…☆97Feb 3, 2026Updated 4 months ago
- Toolset to manipulate RPC clients by finding delayed services and masquerading as them☆115Apr 28, 2026Updated last month
- Chameleon is a polymorphic engine for x86_64 position independent shellcode that has been created out of the need to evade signature-base…☆49Oct 3, 2025Updated 8 months ago
- Rust template/library for implementing your own COFF loader☆71Jan 27, 2025Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- ☆50Jun 4, 2025Updated last year
- ☆14Dec 26, 2024Updated last year
- ☆15Jan 26, 2023Updated 3 years ago
- arm64 linux position-independent shellcode framework☆31Dec 12, 2025Updated 6 months ago
- This is a VxLAN PoC code for Talks: From Spoofing to Tunneling: New Red Team's Networking Techniques for Initial Access and Evasion☆31Jul 21, 2025Updated 10 months ago
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆437Sep 29, 2025Updated 8 months ago
- OpenHashAPI provides a secure method of communicating hashes and enables lightweight workflows for security practitioners and enthusiasts…☆13Oct 27, 2024Updated last year
- Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) Phan…☆285Sep 18, 2024Updated last year
- Local SYSTEM auth trigger for relaying - X☆158Jul 23, 2025Updated 10 months ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Info on how to use Kerberos KDC on a non-domain joined host☆54Jul 31, 2024Updated last year
- ☆16Dec 7, 2025Updated 6 months ago
- A collection of tools using OCR to extract potential usernames from RDP screenshots.☆30Apr 15, 2024Updated 2 years ago
- Virtual Trust Level (VTL 1) secure call tracing☆101Feb 12, 2026Updated 4 months ago
- SOCKS5 proxy tool that uses Azure Storage services as a means of communication.☆356Mar 21, 2026Updated 2 months ago
- An executable that simplifies adding the msds-AllowedToActOnBehalfOfOtherIdentity attribute for RBCD☆49Mar 10, 2025Updated last year
- Research into WinSxS binaries and finding hijackable paths☆31Dec 7, 2025Updated 6 months ago
- Attack Active Directory Trusts with a single tool☆14Jan 15, 2025Updated last year
- A Rust implementation of Internal-Monologue — retrieving NetNTLM hashes without touching LSASS, leveraging SSPI for NTLM negotiation and …☆190Apr 26, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- StoneKeeper C2, an experimental EDR evasion framework for research purposes☆208Dec 25, 2024Updated last year
- Terminate AV/EDR leveraging BYOVD attack☆104Mar 21, 2025Updated last year
- ☆27Mar 6, 2025Updated last year
- ☆43Feb 18, 2025Updated last year
- Helps defenders find their WSUS configurations in the wake of CVE-2025-59287☆46Oct 28, 2025Updated 7 months ago
- WinRAR 0day CVE-2025-8088 PoC RAR Archive☆46Aug 12, 2025Updated 10 months ago
- Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.☆134Oct 4, 2024Updated last year
- Generating legitimate call stack frame along with indirect syscalls by abusing Vectored Exception Handling (VEH) to bypass User-Land EDR …☆309Jul 31, 2024Updated last year
- ☆61Oct 24, 2024Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- An interactive TUI tool to create Brute Ratel C4 profiles based on BURP browsing data.☆32May 23, 2025Updated last year
- A proof of concept demonstrating the DLL-load proxying using undocumented Syscalls.☆411Jan 11, 2026Updated 5 months ago
- a short C code POC to gain persistence and evade sysmon event code registry (creation, update and deletion) REG_NOTIFY_CLASS Registry Cal…☆66Aug 23, 2023Updated 2 years ago
- Position-independent Reflective Loader for macOS☆127Feb 19, 2026Updated 3 months ago
- A lightweight Command and Control (C2) framework built for offensive security research and red teaming (Post Exploitation).☆67Dec 17, 2025Updated 6 months ago
- Firefox webInjector capable of injecting codes into webpages using a mitmproxy.☆42Oct 30, 2022Updated 3 years ago
- Tools for analyzing EDR agents☆278Jun 10, 2024Updated 2 years ago