vari-sh / RedTeamGrimoireView external linksLinks
π₯π Forbidden collection of Red Team sorcery ππ₯
β331Feb 5, 2026Updated last week
Alternatives and similar repositories for RedTeamGrimoire
Users that are interested in RedTeamGrimoire are comparing it to the libraries listed below
Sorting:
- Dump protected process memory by using BYOVD to tamper with handle objects in the kernel.β38Aug 5, 2025Updated 6 months ago
- SOAPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) from Linux hosts.β160Jan 23, 2026Updated 3 weeks ago
- Panoptes Endpoint Detection and Response Solutionβ42Jan 19, 2026Updated 3 weeks ago
- Random BOFs for LDAP tradecraftβ72Sep 9, 2025Updated 5 months ago
- Local SYSTEM auth trigger for relaying - Xβ155Jul 23, 2025Updated 6 months ago
- Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)β698May 7, 2025Updated 9 months ago
- Locate dlls and function addresses without PEB Walk and EAT parsingβ104Nov 7, 2025Updated 3 months ago
- Weaponizing DCOM for NTLM Authentication Coercionsβ275Jul 1, 2025Updated 7 months ago
- β235Oct 8, 2024Updated last year
- Indirect Syscall implementation to bypass userland NTAPIs hooking.β84Aug 13, 2024Updated last year
- A secure sandbox environment for malware developers and red teamers to test payloads against detection mechanisms before deployment. Inteβ¦β1,301Nov 12, 2025Updated 3 months ago
- Build sneaky & malicious LNK files.β159Jul 16, 2025Updated 6 months ago
- RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debuggingβ203Mar 6, 2025Updated 11 months ago
- β47Dec 5, 2025Updated 2 months ago
- Huffman Coding in Shellcode Obfuscation & Dynamic Indirect Syscalls Loader.β282Apr 6, 2025Updated 10 months ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders β¦β103Mar 27, 2025Updated 10 months ago
- Impersonate Windows tokens in Nimβ23Aug 4, 2025Updated 6 months ago
- Ludus role for deploying a Cobalt Strike Teamserver onto Linux serversβ18Mar 19, 2025Updated 10 months ago
- Bypassing Amsi using LdrLoadDllβ47Jan 8, 2025Updated last year
- Evasive Payload Delivery Server & C2 Redirectorβ112Nov 3, 2025Updated 3 months ago
- SoaPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) from Linux hosts.β260Feb 21, 2025Updated 11 months ago
- Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!β534May 9, 2025Updated 9 months ago
- A PoC for Early Cascade process injection technique.β208Jan 30, 2025Updated last year
- β82Apr 28, 2025Updated 9 months ago
- AppLocker-Based EDR Neutralizationβ289Dec 19, 2025Updated last month
- ProxyWatchβ34Updated this week
- Analyse your malware to surgically obfuscate itβ517Dec 17, 2025Updated last month
- Easy to use, open-source infrastructure management platform, crafted specifically for red team engagements.β108Jan 19, 2026Updated 3 weeks ago
- A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the β¦