5 repository-uri
Execution of simulated malicious payloads to assess the impact of a system compromise.
Distinct from Execution Payload Tracing: Focuses on simulating attack impact rather than tracing AI agent payloads
Explore 5 awesome GitHub repositories matching networking & communication · Adversarial Payload Execution. Refine with filters or upvote what's useful.
Monkey is an adversary emulation platform and breach and attack simulation tool designed to test network defenses through automated lateral movement and exploit delivery. It functions as a network security testing system that evaluates security posture by attempting to propagate through vulnerabilities and extract sensitive system credentials. The platform distinguishes itself by simulating specific real-world attacker behaviors, such as ransomware encryption, cryptojacking, and the theft of browser-stored credentials and secure shell keys. It utilizes binary hash randomization to evade antiv
Runs malicious payloads on infected machines to test the depth and impact of a successful compromise.
P4wnP1 is a hardware-based USB HID attack platform and peripheral emulator. It functions as a tool for emulating USB keyboards and mice to execute automated keystroke payloads, as well as a WiFi-enabled remote access tool that provides a wireless bridge for network relay and SSH access. The project is distinguished by its ability to establish covert bidirectional communication channels and remote shells using raw HID reports, specifically to bridge air-gapped systems. It further enables wireless network interception and the routing of network traffic over WiFi to facilitate man-in-the-middle
Executes bash payloads when events occur like network link up, target IP assignment, or SSH login.
This project is a set of specialized utilities for generating malformed documents, obfuscating payloads, and crafting specific attack vectors to evaluate the resilience of security scanners. It functions as a PDF fuzzing framework and security testing tool designed to create PDF files with embedded payloads for verifying how document viewers and web applications handle vulnerabilities. The toolkit provides capabilities for encoding and hiding malicious content to test the detection effectiveness of security scanners. It includes a security payload generator for crafting specific attack vector
Constructs PDF files by combining vulnerability strings with valid file format specifications.
Acest proiect este un toolkit cuprinzător pentru auditul de securitate Linux și enumerarea sistemului. Funcționează ca un framework pentru identificarea slăbiciunilor de configurare, colectarea informațiilor despre sistem și detectarea vulnerabilităților pentru a ajuta la obținerea unor niveluri mai ridicate de acces administrativ pe sistemele Linux. Toolkit-ul include capabilități specializate pentru scanarea vulnerabilităților bazată pe versiuni, care potrivește software-ul instalat cu release-urile afectate cunoscute, și monitorizarea proceselor pe intervale de timp pentru a urmări tiparele recurente ale sistemului și sarcinile periodice. Oferă, de asemenea, infrastructură pentru găzduirea și livrarea scripturilor de enumerare printr-o rețea locală pentru execuție la distanță pe mașinile țintă. Sistemul acoperă o gamă largă de domenii de analiză a securității, inclusiv scanarea pentru escaladarea privilegiilor locale, enumerarea bazată pe reguli și raportarea output-ului filtrat bazată pe nivelurile de verbozitate și categoriile definite de utilizator.
Transfers and triggers analysis logic on separate hosts to perform security audits from a remote position.
BloodHound is an identity risk management platform and graph-based attack path analyzer used to map identity relationships and permissions in Active Directory. It functions as a security tool for auditing directory services, uncovering unintended privilege relationships, and visualizing sequences of permissions that can lead to domain compromise. The project differentiates itself as a comprehensive adversary emulation framework that coordinates remote agents and executes post-exploitation commands. It includes a reverse proxy for bypassing multi-factor authentication via real-time session hij
Executes binary files and assemblies on remote agents to extend their operational capabilities.