Skip to content
View reveng007's full-sized avatar
💩
Trying to code!
💩
Trying to code!

Block or report reveng007

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Boot-to-Breach red team lab on AWS. Mythic, Sliver, and Havoc C2 behind a production-style Apache redirector. Deployed via Terraform, to be used for training/self hosted environments.

Shell 174 19 Updated Mar 18, 2026
TypeScript 1,602 226 Updated Feb 27, 2026

Data pipelines for cloud config and security data. Build cloud asset inventory, CSPM, FinOps, and vulnerability management solutions. Extract from AWS, Azure, GCP, and 70+ cloud and SaaS sources.

Go 6,353 550 Updated Mar 27, 2026

The Mimikatz Missing Manual

377 50 Updated Feb 5, 2026

A comprehensive framework for analyzing and defending against attacks targeting Software Development Life Cycle Infrastructure.

HTML 138 14 Updated Mar 24, 2026

Weaponize signed .NET ClickOnce applications for initial access by hijacking a dependency DLL via AppDomainManager injection and loading a C# port of ProxyBlob Agent.

Python 151 19 Updated Feb 14, 2026

Hands-on projects for beginners to learn and practice Active Directory monitoring using various tools.

184 45 Updated Jun 21, 2024
JavaScript 1,575 93 Updated Mar 23, 2026

Official MCP Servers for AWS

Python 8,592 1,390 Updated Mar 27, 2026

Security automation with n8n ideas: 100+ Red/Blue/AppSec workflows, integrations, and ready-to-run playbooks.

632 123 Updated Sep 20, 2025

AutoPentestX – Automated Pentesting & Vulnerability Reporting Tool

Python 1,038 202 Updated Feb 2, 2026

Convert Microsoft Defender Antivirus Signatures (VDM) into SQL DB

Python 25 1 Updated Nov 21, 2025

some KQL Queries for Advanced Hunting

PowerShell 73 7 Updated Mar 23, 2026

A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.

Python 4,516 849 Updated Jan 12, 2026

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.

PowerShell 2,485 366 Updated Dec 31, 2025

macOS Initial Access Payload Generator

Python 323 41 Updated Jan 10, 2024

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

C 281 29 Updated Mar 27, 2026

Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.

C 210 23 Updated Jan 6, 2026

A Beacon Object File (BOF) that performs the complete ESC1 attack chain in a single execution: certificate request with arbitrary SAN (+SID), PKINIT authentication, and NT hash extraction via UnPAC…

C 117 19 Updated Dec 21, 2025

C2concealer is a command line tool that generates randomized C2 malleable profiles for use in Cobalt Strike.

Python 1,098 176 Updated Mar 25, 2026

A script to randomize Cobalt Strike Malleable C2 profiles and reduce the chances of flagging signature-based detection controls

Python 454 86 Updated Sep 9, 2022

PentestAgent is an AI agent framework for black-box security testing, supporting bug bounty, red-team, and penetration testing workflows.

Python 1,809 375 Updated Mar 25, 2026

AppLocker-Based EDR Neutralization

C 328 46 Updated Dec 19, 2025

Adversary tradecraft detection, protection, and hunting

Go 2,438 203 Updated Mar 24, 2026

A collection of intel and usernames scraped from various cybercrime sources & forums. DarkForums, HackForums, Patched, Cracked, BreachForums, LeakBase, XSS, Dread, & more

173 24 Updated Mar 27, 2026

Splunk Boss of the SOC version 3 dataset.

422 72 Updated Jun 18, 2020

Azure Sentinel KQL

471 115 Updated Jul 28, 2025

Code included as part of the MustLearnKQL blog series

1,152 196 Updated Jan 30, 2026

Modern security products (CrowdStrike, Bitdefender, SentinelOne, etc.) hook the nLoadImage function inside clr.dll to intercept and scan in-memory .NET assembly loads. This tool unhooks that functi…

C++ 209 24 Updated Dec 8, 2025
Next