aalex954 / evilginx2-TTPs
Reverse engineered to remove IOCs, added Exchange Online Protection IP blacklist and bing-bot user-agent blocking, DNS configuration and notes on usage.
☆115Updated 8 months ago
Alternatives and similar repositories for evilginx2-TTPs:
Users that are interested in evilginx2-TTPs are comparing it to the libraries listed below
- Bounces when a fish bites - Evilginx database monitoring with exfiltration automation☆164Updated 8 months ago
- sturdy-chainsaw☆54Updated last year
- Updated o365 Evilginx phishlet for WHfB☆18Updated 11 months ago
- ✉️ HTML Smuggling generator&obfuscator for your Red Team operations☆162Updated last year
- A collection of Cobalt Strike Aggressor scripts.☆92Updated 3 years ago
- Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs☆343Updated 2 months ago
- NukeAMSI is a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments.☆146Updated last month
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆108Updated last month
- Snaffler reimplementation in Python - https://github.com/SnaffCon/Snaffler☆94Updated 4 months ago
- Proof of concept: using a Cloudflare worker for AITM attacks☆112Updated last month
- RedInfraCraft automates the deployment of powerful red team infrastructures! It streamlines the setup of C2s, makes it easy to create adv…☆111Updated 3 months ago
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆103Updated last year
- Continuous password spraying tool☆129Updated 2 weeks ago
- ☆290Updated last year
- PACU - Phishing Automation & Campaigning Utility☆39Updated 2 years ago
- Python implementation of GhostPack's Seatbelt situational awareness tool☆252Updated 3 months ago
- A Slack bot phishing framework for Red Teaming exercises☆164Updated 10 months ago
- ☆189Updated 5 months ago
- ☆103Updated 5 months ago
- Retrieve and display information about active user sessions on remote computers. No admin privileges required.☆180Updated 6 months ago
- A C2 framework built for my bachelors thesis☆55Updated 4 months ago
- Certified Red Team Operator (CRTO) Cheatsheet and Checklist☆90Updated 11 months ago
- ☆165Updated 3 months ago
- A new approach to Browser In The Browser (BITB) without the use of iframes, allowing the bypass of traditional framebusters implemented b…☆377Updated 9 months ago
- C or BOF file to extract WebKit master key to decrypt user cookie☆189Updated 10 months ago
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆150Updated 9 months ago
- A shellcode injection tool showcasing various process injection techniques☆134Updated last year
- Python utility that generates "imageless" QR codes in various formats☆114Updated 6 months ago
- Various one-off pentesting projects written in Nim. Updates happen on a whim.☆149Updated 2 months ago