TheCyb3rAlpha / BobTheSmugglerLinks
"Bob the Smuggler": A tool that leverages HTML Smuggling Attack and allows you to create HTML files with embedded 7z/zip archives. The tool would compress your binary (EXE/DLL) into 7z/zip file format, then XOR encrypt the archive and then hides inside PNG/GIF image file format (Image Polyglots).
☆562Updated last week
Alternatives and similar repositories for BobTheSmuggler
Users that are interested in BobTheSmuggler are comparing it to the libraries listed below
Sorting:
- A system administration or post-exploitation script to automatically extract the bitlocker recovery keys from a domain.☆380Updated last month
- Amnesiac is a post-exploitation framework entirely written in PowerShell and designed to assist with lateral movement within Active Direc…☆432Updated last month
- A new approach to Browser In The Browser (BITB) without the use of iframes, allowing the bypass of traditional framebusters implemented b…☆425Updated last year
- Compiled tools for internal assessments☆360Updated last week
- ☆562Updated last year
- Weaponized Browser-in-the-Middle (BitM) for Penetration Testers☆561Updated 5 months ago
- ☆303Updated last year
- A tool which bypasses AMSI (AntiMalware Scan Interface) and PowerShell CLM (Constrained Language Mode) and gives you a FullLanguage Power…☆806Updated 7 months ago
- Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs☆466Updated 4 months ago
- C2 infrastructure over Microsoft Teams.☆726Updated 9 months ago
- A red team tool that assists into extracting/dumping master credentials and/or entries from different password managers.☆761Updated 9 months ago
- A SOCKS proxy written in Python that randomizes your source IP address. Round-robin your evil packets through SSH tunnels or give them bi…☆487Updated this week
- A secure sandbox environment for malware developers and red teamers to test payloads against detection mechanisms before deployment. Inte…☆1,195Updated last month
- Proof-of-concept to demonstrate dynamic QR swap phishing attacks in practice.☆336Updated last year
- An offensive data enrichment pipeline☆859Updated last week
- EDRaser is a powerful tool for remotely deleting access logs, Windows event logs, databases, and other files on remote machines. It offer…☆374Updated last year
- Bear C2 is a compilation of C2 scripts, payloads, and stagers used in simulated attacks by Russian APT groups, Bear features a variety of…☆429Updated 2 months ago
- Wordlist to crack .zip-file password☆206Updated 3 years ago
- This is for Ethical Use only.☆439Updated 5 months ago
- Tool to automatically exploit Active Directory privilege escalation paths shown by BloodHound☆620Updated last week
- A RedTeam Toolkit☆407Updated 2 months ago
- ☆373Updated 7 months ago
- This repository is a compilation of all APT simulations that target many vital sectors,both private and governmental. The simulation inc…☆758Updated last week
- Redeye is a tool intended to help you manage your data during a pentest operation☆470Updated last year
- Lab used for workshop and CTF☆281Updated 2 months ago
- A visual methodology tracking platform tailored for offensive security assessments☆223Updated last month
- Active Directory Auditing and Enumeration☆491Updated 2 weeks ago
- Demonized Shell is an Advanced Tool for persistence in linux.☆419Updated 9 months ago
- Hekatomb is a python script that connects to LDAP directory to retrieve all computers and users informations. Then it will download all D…☆520Updated last year
- Script for generating revshells☆475Updated last year