ENNAENNA
🔥

Offensive Ops

52 tools indexed

Red team and offensive operations tooling including C2 frameworks, evasion techniques, lateral movement utilities, and specialized attack tools. Built for authorized penetration testing and adversary simulation exercises.

Mythic

Go
OffensiveFeatured

Collaborative, multi-platform C2 framework. Docker-based with web UI, multiple agent types, and plugin architecture.

c2red-teammulti-operatordocker
4.4k57426d ago

Havoc

C/C++
OffensiveFeatured

Modern C2 framework. Qt-based GUI, BOF support, custom agents, and a Cobalt Strike-inspired workflow.

c2red-teamguibof
8.3k1.2k5mo ago

Rubeus

C#
OffensiveFeatured

C# toolset for raw Kerberos interaction and abuse. AS-REP roasting, Kerberoasting, ticket manipulation, delegation attacks.

kerberosactive-directoryroastingdelegation
5.0k8886mo ago

Certipy

Python
OffensiveFeatured

Active Directory Certificate Services (AD CS) abuse tool. Find and exploit certificate template misconfigurations.

active-directorycertificatesadcsprivilege-escalation
3.5k4572mo ago

Coercer

Python
Offensive

Automatically find and exploit Windows authentication coercion vulnerabilities. PetitPotam, PrinterBug, and more.

authentication-coercionntlm-relaypetitpotamactive-directory
2.2k21527d ago

SharpHound

C#
Offensive

Official BloodHound data collector. Enumerates Active Directory objects, sessions, ACLs, and trusts for graph analysis.

active-directoryenumerationbloodhoundgraph-data
1.3k25428d ago

BeEF

Ruby
OffensiveFeatured

Browser Exploitation Framework. Hook browsers via XSS, then pivot into the network using browser-based attacks.

browserxsshooksocial-engineering
10.8k2.4k27d ago

Social-Engineer Toolkit

Python
OffensiveFeatured

Open-source social engineering framework. Spear-phishing, web attacks, USB/HID attacks, and credential harvesting.

social-engineeringphishingcredential-harvestusb-attack
14.8k3.3k1y ago

Quasar RAT

C#
Offensive

Open-source remote administration tool for Windows. Full remote desktop, keylogger, file manager, and reverse proxy.

ratremote-accesskeyloggerremote-desktop
9.8k2.6k2y ago

Donut

C
OffensiveFeatured

Generates position-independent shellcode from .NET assemblies, PE files, and DLLs. Load anything in memory.

shellcodein-memoryevasiondotnet
4.6k73910mo ago

ScareCrow

Go
OffensiveFeatured

Payload creation framework for EDR bypass. Generates loaders using WinAPI syscalls to evade userland hooks.

edr-bypasssyscallsloaderevasion
2.9k5302y ago

SharpCollection

C#
Offensive

Nightly builds of common C# offensive tools. Pre-compiled Rubeus, Seatbelt, SharpUp, Certify, and 50+ more.

dotnetpre-compiledred-teamcollection
2.9k39229d ago

Seatbelt

C#
Offensive

C# safety checks for offensive operations. Enumerates host security config, credentials, and interesting data.

enumerationhost-surveysecurity-checkscredentials
4.6k7641y ago

HackRF One

C
OffensiveFeatured

Open-source software-defined radio platform. Transmit and receive 1 MHz to 6 GHz. The hardware hacker's SDR.

sdrradiohardwaresub-ghz
7.8k1.7k27d ago

USB Rubber Ducky Payloads

DuckyScript
Offensive

Payload repository for USB Rubber Ducky and BadUSB devices. Keystroke injection scripts for every scenario.

badusbhidkeystroke-injectionphysical-access
5.7k1.6k1mo ago

pwncat

Python
OffensiveFeatured

Post-exploitation platform and target management. Automatic privesc, persistence, file transfer - the smart reverse shell.

post-exploitationreverse-shellprivescpersistence
2.9k2901y ago

Villain

Python
Offensive

Windows and Linux backdoor generator and handler. Auto-obfuscation, multi-session, and reverse shell management.

backdoorreverse-shellobfuscationmulti-session
4.4k6921y ago

Creepy

Python
Offensive

Geolocation OSINT tool. Aggregates location data from social media, photos, and online services on a map.

geolocationosintsocial-mediagps
1.4k32010y ago

pwndrop

Go
Offensive

Self-deployable file hosting for red teams. Upload payloads, host phishing files, serve implants - with HTTPS and Let's Encrypt.

file-hostingpayload-deliveryred-teamhttps
2.2k2903y ago

Stegseek

C++
Offensive

Lightning fast steganography brute-forcer. Cracks steghide passwords at 200+ GB/s using wordlists.

steganographybrute-forcesteghidectf
1.3k1292y ago

Peirates

Go
Offensive

Kubernetes penetration testing tool. Exploit misconfigs, steal secrets, move laterally in K8s clusters.

kubernetescloudcontainer-escapesecrets
1.4k1291mo ago

Pacu

Python
OffensiveFeatured

AWS exploitation framework. Enumerate, escalate, and exfiltrate across AWS services. The Metasploit of cloud.

awscloudprivilege-escalationiam
5.2k78324d ago

Prowler

Python
Offensive

Cloud security assessment tool. 300+ checks for AWS, Azure, GCP, and Kubernetes against CIS benchmarks.

cloud-securityawsazuregcp
13.7k2.1k24d ago

Starkiller

JavaScript
Offensive

Frontend GUI for PowerShell Empire - manage listeners, agents, and modules through a modern Electron interface.

c2-guiempireagent-managementred-team
1.6k2411mo ago

hoaxshell

Python
Offensive

Unconventional Windows reverse shell using HTTP(S) traffic - fully undetectable by Microsoft Defender.

reverse-shellevasionwindowshttp-shell
3.5k5241y ago

Penelope

Python
Offensive

Advanced reverse shell handler. Auto-upgrades shells to PTY, handles multiple sessions, with built-in file transfer and logging.

reverse-shellhandlerptymulti-session
1.7k1881mo ago

PetitPotam

Python
Offensive

NTLM relay coercion tool. Forces Windows machines to authenticate via MS-EFSRPC, enabling relay attacks for domain compromise.

ntlm-relaycoercionactive-directoryefsrpc
2.2k2971y ago

Whisker

C#
Offensive

Shadow Credentials attack tool. Adds rogue Key Credentials to AD objects for Kerberos authentication without knowing passwords.

shadow-credentialsactive-directorykerberospkinit
9431211y ago

CALDERA

Python
Offensive

MITRE ATT&CK-based automated adversary emulation platform for red team operations and security testing.

adversary-emulationmitre-attackred-teamautomation
6.9k1.3k27d ago

Pupy

Python
Offensive

Cross-platform remote administration and post-exploitation tool with in-memory execution.

ratpost-exploitationc2
9.0k1.9k2y ago

Faraday

Python
Offensive

Collaborative penetration testing and vulnerability management platform.

pentestcollaborationvulnerabilitymanagement
6.4k1.1k1mo ago

Amber

Go
Offensive

Reflective PE packer converting native PE files to position-independent shellcode.

shellcodepackerevasionred-team
1.4k2202y ago

RedELK

Python
Offensive

Red team OPSEC monitoring and tracking using ELK stack integration.

red-teamopsecelktracking
2.6k39226d ago

PayloadsAllTheThings

Python
Offensive

Comprehensive reference of payloads and bypasses for web application pentesting.

payloadswebbypasscheatsheet
77.3k16.9k29d ago

PHPSploit

Python
Offensive

Stealth post-exploitation C2 framework tunneled through PHP web servers.

c2phpbackdoorpost-exploitation
2.5k4722y ago

Ronin

Ruby
Offensive

Ruby toolkit for security research with built-in exploit development and recon.

rubyexploitsecurity-research
743594mo ago

Merlin

Go
Offensive

Cross-platform HTTP/2 command and control server and agent written in Go. Supports QUIC, HTTP/3, and encrypted communications.

c2http2post-exploitationcross-platform
5.5k8371y ago

Empire

Python
Offensive

Post-exploitation and adversary emulation framework with PowerShell, Python, and C# agents. BC-Security maintained fork.

c2post-exploitationadversary-emulationpowershell
5.1k6781mo ago

WinPwn

PowerShell
Offensive

Automated Windows internal penetration testing toolkit. Runs recon, privesc, credential extraction, and lateral movement in one script.

windowsautomationinternal-pentestprivilege-escalation
3.7k5428mo ago

Inveigh

C#
Offensive

.NET/PowerShell LLMNR, NBNS, mDNS, DNS, and DHCPv6 spoofing tool with integrated relay attack support.

llmnr-poisoningntlm-relaycredential-captureactive-directory
3.0k4666mo ago

Weevely

Python
Offensive

Weaponized PHP web shell with 30+ modules for post-exploitation, pivoting, and privilege escalation through a tiny backdoor.

webshellphppost-exploitationbackdoor
3.5k6317mo ago

Commando VM

PowerShell
Offensive

Mandiant's Windows-based penetration testing distribution. Automated installer for 140+ offensive security tools on Windows.

pentest-distrowindowstoolsetmandiant
7.6k1.3k7mo ago

MailSniper

PowerShell
Offensive

PowerShell tool for searching through Exchange and Office 365 email for sensitive data, credentials, and insider threat indicators.

exchangeemail-searchoffice365credential-hunting
3.2k5999mo ago

DomainPasswordSpray

PowerShell
Offensive

PowerShell tool for performing password spray attacks against Active Directory domain accounts with lockout-aware throttling.

password-sprayactive-directorycredential-attackpowershell
2.0k4141y ago

Ruler

Go
Offensive

Tool for abusing Exchange services to gain remote code execution via Outlook mail rules, forms, and home page exploitation.

exchangeoutlook-abusercemail-rules
2.3k3621y ago

PrivescCheck

PowerShell
Offensive

Windows privilege escalation enumeration script. Checks services, scheduled tasks, registry, credentials, and dozens of escalation vectors.

privilege-escalationwindowsenumerationsecurity-audit
3.8k5001mo ago

PingCastle

C#
Offensive

Active Directory security assessment tool that generates risk scores and identifies misconfigurations, trust issues, and attack paths.

active-directorysecurity-assessmentrisk-scoringdomain-audit
2.8k3411mo ago

SSH-Snake

Shell
Offensive

Self-propagating, fileless network traversal tool that discovers and uses SSH keys to map reachable infrastructure.

sshlateral-movementself-propagatingkey-discovery
2.3k2171mo ago

emp3r0r

Go
Offensive

Self-healing mesh C2 framework with agent persistence, steganography transport, and automated post-exploitation for Linux.

c2linuxmesh-networksteganography
1.7k27525d ago

HexStrike AI

Python
OffensiveFeatured

MCP server giving AI agents access to 150+ cybersecurity tools for automated pentesting, vulnerability discovery, and bug bounty automation.

mcpai-agentsautomationpentesting
8.6k89024d ago

Decepticon

Python
Offensive

Autonomous red team agent executing full kill chains from recon through C2 with MITRE ATT&CK mapping and Neo4j knowledge graph.

autonomousred-teamai-agentkill-chain
3.5k41021d ago

RedAmon

Python
Offensive

AI-powered agentic red team framework automating recon through exploitation with LangGraph, Neo4j, and 70+ integrated tools.

ai-red-teamautomationlanggraphattack-graph
1.8k21019d ago