Windows security research toolkit for LPE, persistence, COM hijacking, and attack surface enumeration.
☆164Jun 13, 2026Updated this week
Alternatives and similar repositories for Ferrum
Users that are interested in Ferrum are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Crystal Palace library for proxying Nt API calls via the Threadpool. Updated for call gadgets.☆23Nov 11, 2025Updated 7 months ago
- ☆84Apr 8, 2026Updated 2 months ago
- Pipeleek scans CI/CD logs and artifacts to detect leaked secrets and pivot from them☆19Updated this week
- single-threaded event driven sleep obfuscation poc for linux☆51Jun 14, 2025Updated last year
- Using Just In Time (JIT) instruction decryption, this shellcode loader ensures that only the currently executing instruction is visible i…☆66Apr 2, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)☆105Apr 4, 2026Updated 2 months ago
- This repository contains Loadable Kernel Modules (LKM) and LD_PRELOAD-based modules designed for penetration testing, red teaming, and se…☆13Feb 15, 2025Updated last year
- A Pentesters Confluence Keyword Scanner☆20Dec 3, 2024Updated last year
- ☆19Dec 18, 2024Updated last year
- A proof of concept AMSI & ETW bypass using trampolines for hooking and modifying execution flow☆19Jun 26, 2025Updated 11 months ago
- A simple to use single-include Windows API resolver☆22Jul 9, 2024Updated last year
- Putting the C2 in C2loudflare☆18Jun 28, 2024Updated last year
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆65Jan 21, 2025Updated last year
- A swiss army knife tool for running, injecting and organizing your BOFs collection☆73May 27, 2026Updated 2 weeks ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.☆54Mar 30, 2026Updated 2 months ago
- A PoC UDRL for Cobalt Strike built with Crystal Palace that combines Raphael Mudge's page streaming technique with a modular call gate (D…☆129Jan 21, 2026Updated 4 months ago
- ☆69Apr 20, 2026Updated last month
- ☆42Jun 5, 2026Updated last week
- A service container for interacting with SRA's VECTR☆18Apr 9, 2025Updated last year
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆96Jul 3, 2025Updated 11 months ago
- Two WinForms GUI tools for enumerating, searching, and exfiltrating data from M365 environments using application-level OAuth tokens☆224Mar 4, 2026Updated 3 months ago
- Phantom is project created to perform loading and executing unmanaged code in memory within an IIS environment running in full‑trust mode…☆106Jun 5, 2026Updated last week
- Find kernel32 base and API addresses. Simple C++ implementation☆24Apr 7, 2022Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A Crystal Palace shared library to resolve & perform syscalls☆62Oct 29, 2025Updated 7 months ago
- It's what all the kids are talking about☆12Apr 25, 2023Updated 3 years ago
- Tailscale-based Windows VNC persistence tool with Session 0 isolation bypass, embedding a full WireGuard peer and RFB server into a singl…☆294Apr 11, 2026Updated 2 months ago
- process hollowing variant using NtCreateSection + NtMapViewOfSection + ResumeThread☆31Jan 9, 2022Updated 4 years ago
- string encryption in Nim☆19Jun 15, 2024Updated 2 years ago
- Enable or Disable TokenPrivilege(s)☆15May 17, 2024Updated 2 years ago
- ☆50Jun 4, 2025Updated last year
- ☆11Jan 23, 2023Updated 3 years ago
- CVE-2025-49144 PoC for security researchers to test and try.☆88Jun 30, 2025Updated 11 months ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- A tool for carrying out brute force attacks against Office 365, with built in IP rotation use AWS gateways.☆80Jun 6, 2024Updated 2 years ago
- fully async implementation of Dirkjan's ROADTools☆34Mar 15, 2025Updated last year
- Shellcode Loader using indirect syscalls☆16Jan 21, 2024Updated 2 years ago
- User-Defined C2 BOF Template☆32Nov 24, 2025Updated 6 months ago
- Repository for dirty scripts and PoCs☆20Feb 18, 2025Updated last year
- a BOF implementation of various registry persistence methods☆97Nov 11, 2025Updated 7 months ago
- Addon for BHCE☆58Apr 1, 2025Updated last year