SpiderLabs / Firework
Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.
☆44Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for Firework
- Quick PoC I Wrote for Bypassing Next Gen AV Remotely for Pentesting☆41Updated 5 years ago
- BlackHat Europe 2017 Slides☆26Updated 6 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 5 years ago
- C2Shell is a shell script designed for a fast deploy of C&C servers for Red Team Operations.☆2Updated 3 years ago
- Strutsy - Mass exploitation of Apache Struts (CVE-2017-5638) vulnerability☆10Updated 6 years ago
- WhiteBox CMS analysis☆68Updated last year
- AV Bypass☆28Updated 6 years ago
- Mimikatz HashClash☆12Updated 9 years ago
- AWS S3 Bucket/Object Finder☆25Updated 6 years ago
- Windows LNK/URL shortcut auto-binding hotkey (not a bug, feature)☆30Updated 6 years ago
- ☆19Updated 7 years ago
- ☆58Updated 7 years ago
- Quick and dirty System (Power)Shell using NamedPipe impersonation.☆43Updated 8 years ago
- This script generate backdoor code which log username password of an user who have passed HTTP basic auth using LDAP credentials.☆58Updated 7 years ago
- Automating those tasks which can or should be automated☆60Updated 6 years ago
- Intelligent threat hunter and phishing servers☆46Updated 5 years ago
- A C# web handler that is vulnerable to XXE with PoC. This is to serve as an example of what vulnerable C# code looks like.☆26Updated 11 years ago
- WORK IN PROGRESS. Waits for MSF session then automatically gets domain admin☆64Updated last year
- A collection of scripts that I've written while pentesting.☆31Updated 6 years ago
- ☆47Updated 8 years ago
- Custom stagers with python encrypting proxy☆40Updated 9 years ago
- PHDAYS |||☆17Updated 11 years ago
- Comprehensive Pivoting Framework☆20Updated 8 years ago
- Empire HTTP(S) C2 redirector setup script☆46Updated 6 years ago
- A WebDAV PROPFIND covert channel to deliver payloads☆53Updated 6 years ago
- Scan for open S3 buckets and dump☆35Updated 6 years ago
- CVE-2017-8570 Exploit☆21Updated 7 years ago