Ransomware simulation script written in PowerShell. Useful for testing your defenses and backups against real ransomware-like activity in a controlled setting.
☆247Oct 14, 2024Updated last year
Alternatives and similar repositories for RanSim
Users that are interested in RanSim are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PowerShell Ransomware Simulator with C2 Server☆509Jan 2, 2026Updated 8 months ago
- Make an executable run with TrustedInstaller permissions under SYSTEM account.☆48Nov 16, 2020Updated 5 years ago
- Ransomware Simulator for Red/Blue teams to test their defences.☆20Apr 4, 2022Updated 4 years ago
- Ransomware simulator written in Golang☆484Jun 30, 2022Updated 4 years ago
- Simple 5060 port exploit that calls to a receiver device with pre-setuped phrase☆34Jul 5, 2022Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆14Mar 28, 2018Updated 8 years ago
- Repository and archive for Killing The Bear Gitbook☆80Aug 15, 2023Updated 3 years ago
- Jasmin Ransomware is an advanced red team tool (WannaCry Clone) used for simulating real ransomware attacks. Jasmin helps security resear…☆287Mar 1, 2021Updated 5 years ago
- Notes and IoCs of fresh malware☆63Jul 5, 2024Updated 2 years ago
- Pathbyter is a lightning fast proof-of-concept ransomware that uses RSA wrapped AES, multiprocessing, in memory key encryption, appends e…☆26Sep 25, 2023Updated 2 years ago
- A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other ob…☆492Oct 14, 2022Updated 3 years ago
- Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs☆1,233Aug 18, 2023Updated 3 years ago
- Cisco CallManager User Enumeration☆16Aug 16, 2022Updated 4 years ago
- Helping to automate payload development, testing, Opsec checking, beacon tasking, and deployment for Cobalt Strike☆51Jun 18, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆16May 20, 2022Updated 4 years ago
- Reproducing the SkeletonKey malware.☆12Apr 6, 2024Updated 2 years ago
- Finding all things on-prem Microsoft for password spraying and enumeration.☆259May 17, 2022Updated 4 years ago
- Resources for DFIR Professionals Responding to the REvil Ransomware Kaseya Supply Chain Attack☆182Jul 6, 2021Updated 5 years ago
- evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)☆1,510Dec 21, 2023Updated 2 years ago
- A C2 post-exploitation framework☆484Jan 24, 2024Updated 2 years ago
- pyCobaltHound is an Aggressor script extension for Cobalt Strike which aims to provide a deep integration between Cobalt Strike and Blood…☆135May 25, 2023Updated 3 years ago
- .NET executable to use when dealing with privilege escalation on Windows to gain local administrator access☆160Nov 1, 2022Updated 3 years ago
- Ransomware Simulator for testing Blue Team Detections☆38Jun 5, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A PoC ransomware sample to test out your ransomware response strategy.☆218Aug 10, 2026Updated last month
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆1,474Aug 18, 2023Updated 3 years ago
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆42Dec 8, 2023Updated 2 years ago
- Send phishing messages and attachments to Microsoft Teams users☆1,124Jun 19, 2024Updated 2 years ago
- Lifetime AMSI bypass☆685Sep 26, 2023Updated 2 years ago
- A .NET XOR encrypted cobalt strike aggressor implementation for chisel to utilize faster proxy and advanced socks5 capabilities.☆459Mar 25, 2024Updated 2 years ago
- A swiss army knife for pentesting networks☆27Sep 3, 2022Updated 4 years ago
- Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows…☆2,142Dec 11, 2024Updated last year
- Fully modular persistence framework☆259Apr 10, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Your template-based BloodHound terminal companion tool☆455Jan 21, 2026Updated 8 months ago
- Framework for Kerberos relaying☆955May 29, 2022Updated 4 years ago
- Application Security pipelines☆50May 25, 2022Updated 4 years ago
- ☆853Sep 9, 2022Updated 4 years ago
- Find Microsoft Exchange instance for a given domain and identify the exact version☆190Jan 30, 2023Updated 3 years ago
- TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts☆1,404Mar 9, 2026Updated 6 months ago
- linWinPwn is a bash script that streamlines the use of a number of Active Directory tools☆2,216Updated this week