OAuth Device Code Phishing Toolkit
☆134Apr 18, 2026Updated 3 months ago
Alternatives and similar repositories for squarephish2
Users that are interested in squarephish2 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This is a novel technique that leverages the well-known Device Code phishing approach. It dynamically initiates the flow when the victim …☆205Sep 19, 2025Updated 10 months ago
- Terms of Use Conditional Access M365 Evilginx Phishlet☆46Jun 23, 2025Updated last year
- An alternative to the builtin clipboard feature in Cobalt Strike that adds the capability to enable/disable and dump the clipboard histor…☆114Apr 16, 2026Updated 3 months ago
- A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office3…☆174Jul 31, 2025Updated 11 months ago
- Cross Compatible Command and Control☆48Dec 18, 2025Updated 7 months ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- ☆229Jul 9, 2026Updated 2 weeks ago
- Parser and reconciliation tooling for large Active Directory environments.☆33Feb 18, 2025Updated last year
- An HTA Application which builds Azure (Entra) Scenarios for Red Team Simulations☆63Aug 18, 2025Updated 11 months ago
- ☆79Jan 1, 2026Updated 6 months ago
- Rust implementation of phantom persistence technique documented in https://blog.phantomsec.tools/phantom-persistence☆65Jun 23, 2025Updated last year
- AzDevRecon is a powerful web-based enumeration tool for offensive security professionals, red teamers, and pentesters targeting Azure Dev…☆31Oct 13, 2025Updated 9 months ago
- Lateral Movement Bof with MSI ODBC Driver Install☆173Sep 30, 2025Updated 9 months ago
- Updated o365 Evilginx phishlet for WHfB☆96Mar 16, 2024Updated 2 years ago
- ↕️🤫 Stealth redirector for your red team operation security☆1,099Updated this week
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- A Payload Analysis Framework☆123Oct 9, 2025Updated 9 months ago
- tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it☆135Aug 23, 2025Updated 11 months ago
- ☆295Aug 14, 2025Updated 11 months ago
- ☆146Sep 9, 2025Updated 10 months ago
- A Rust PoC implementation of the Early Bird process hollowing technique, inspired by https://github.com/boku7/HOLLOW.☆31Feb 7, 2025Updated last year
- Robust Cobalt Strike shellcode loader with multiple advanced evasion features☆206Apr 21, 2025Updated last year
- ☆165May 5, 2025Updated last year
- Golang Automation Framework for Cobalt Strike using the Rest API☆60Apr 10, 2026Updated 3 months ago
- Vulnerable (on purpose) programs to leak NtReadVirtualMemory address for stealthier API resolution (no GetProcAddress, GetModuleHandle or…☆42Dec 22, 2025Updated 7 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Zero dependency browser extension for handling import of cookies, Microsoft 365 OAuth tokens, and Graph API interactions.☆35Jun 5, 2026Updated last month
- The dragon in the dark. A red team post exploitation framework for testing security controls during red team assessments.☆509Mar 15, 2026Updated 4 months ago
- Demo code JavaScript POC that tricks user into sending Windows hash to responder☆37Dec 12, 2025Updated 7 months ago
- Python based GUI for browsing LDAP☆183Dec 7, 2025Updated 7 months ago
- Weaponizing DCOM for NTLM Authentication Coercions☆215Nov 4, 2025Updated 8 months ago
- Persist like a Dodder☆68May 19, 2025Updated last year
- Usermode detector that catches indirect syscalls. Traps Hell's Hall, Tartarus' Gate, RecycledGate, and VEH syscalls & Many more.☆85Jun 15, 2026Updated last month
- Beacon Object File (BOF) for Windows Session Hijacking via IHxHelpPaneServer COM☆71Dec 25, 2025Updated 7 months ago
- Fritter is a heavily modified fork of TheWover and Odzhan's Donut shellcode generator.☆243Jun 11, 2026Updated last month
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- TokenSmith generates Entra ID access & refresh tokens on offensive engagements. It is suitable for both covert adversary simulations and …☆415Jan 23, 2025Updated last year
- ☆26Dec 21, 2025Updated 7 months ago
- BadExclusions is a tool to identify folder custom or undocumented exclusions on AV/EDR☆21Feb 8, 2024Updated 2 years ago
- Phantom is project created to perform loading and executing unmanaged code in memory within an IIS environment running in full‑trust mode…☆106Jun 5, 2026Updated last month
- Beacon Object File (BOF) to obtain Entra tokens via authcode flow.☆140Jan 17, 2026Updated 6 months ago
- A small How-To on creating your own weaponized WSL file☆128Jul 23, 2025Updated last year
- Permanently disable EDRs as local admin☆129Dec 19, 2025Updated 7 months ago