Skip to content
View RalfHacker's full-sized avatar

Block or report RalfHacker

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Obfuscation library based on C++20 and metaprogramming

C++ 1,671 255 Updated Dec 26, 2025

Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.

C 205 22 Updated Jan 6, 2026

A Bof to dump domain credentials via DRSGetNCChanges, Created for use with the Adaptix C2.

C 8 1 Updated Dec 16, 2025

mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse

Python 764 117 Updated Feb 16, 2021

Third iteration of Lamperl, a Linux agent for the Adaptix C2 being developed for a blog post.

Go 22 Updated Dec 9, 2025

Collection of many ldap bofs for domain enumeration and privilege escalation. Created for use with the Adaptix C2.

C 56 3 Updated Dec 15, 2025

Agent for AdaptixC2 with focus in evasion, capability and malleable.

C++ 140 29 Updated Feb 4, 2026

Beacon Object File (BOF) that utilizes the Early Bird Cryo Injection technique in order to perform shellcode injection through frozen job objects.

C 17 2 Updated Nov 17, 2025

Collection of BOFs created for red team/adversary engagements. Created to be small and interchangeable, for quick recon or eventing.

C 233 24 Updated Feb 5, 2026

PowerShell agent for AdaptixC2

Go 13 2 Updated Nov 16, 2025

This repo contains a valid ready to run Dockefile to be used in 1C cluster RCE technique

Dockerfile 11 Updated Nov 24, 2025

Grab yer ldapsearch logs from AdaptixC2 a little easier.

Python 14 3 Updated Sep 7, 2025

A Jetbain extension for AXS (AdaptixC2 Scripting Language) with intelligent autocompletion and syntax highlighting.

TypeScript 1 Updated Oct 11, 2025

adws enumeration bof

C 161 17 Updated Oct 2, 2025

Internal Monologue BOF

C 79 7 Updated Dec 28, 2024

Active Directory certificate abuse.

C# 1,909 273 Updated Oct 27, 2025

C2 Agent fully PIC for Mythic with advanced evasion capabilities, dotnet/powershell/shellcode/bof memory executions, lateral moviments, pivot and more.

C++ 195 35 Updated Dec 30, 2025

A little tool to play with Windows security

C 21,240 4,031 Updated May 11, 2025

A WiFi security auditing software mainly based on aircrack-ng tools suite

Rust 354 32 Updated Nov 18, 2025

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

Shell 878 89 Updated Mar 21, 2025

A tool to remotely detect unusual sessions opened on windows machines using RPC

Python 118 11 Updated Jun 10, 2025

Loki - Simple IOC and YARA Scanner

Python 3,715 621 Updated Jan 12, 2026

Small github based C2

Python 4 Updated Feb 16, 2025

Collection of UAC Bypass Techniques Weaponized as BOFs

C 601 75 Updated Feb 21, 2024

Cobalt Strike BOF that identifies Attack Surface Reduction (ASR) rules, actions, and exclusion locations

C++ 160 19 Updated Mar 1, 2024

Library of BOFs to interact with SQL servers

C 220 29 Updated Dec 3, 2025

Collection of Beacon Object Files (BOF) for Cobalt Strike

C 671 95 Updated Aug 15, 2025
Next