Stars
.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
Powerful .NET library for benchmarking
dnSpyEx / dnSpy
Forked from dnSpy/dnSpyUnofficial revival of the well known .NET debugger and assembly editor, dnSpy
Humanizer meets all your .NET needs for manipulating and displaying strings, enums, dates, times, timespans, numbers and quantities
Prism is a framework for building loosely coupled, maintainable, and testable XAML applications in WPF, Xamarin Forms, and Uno / Win UI Applications..
The most popular and friendly mocking framework for .NET
Covenant is a collaborative .NET C2 framework for red teamers.
Simple, powerful, cross-platform SQLite client and ORM for .NET
Sample apps built using the Xamarin.Forms framework
An open-source, free protector for .NET applications
Deserialization payload generator for a variety of .NET formatters
Open source obfuscation tool for .NET assemblies
a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
mkaring / ConfuserEx
Forked from yck1509/ConfuserExAn open-source, free protector for .NET applications
A small, yet powerful framework, designed for building applications across all XAML platforms. Its strong support for MV* patterns will enable you to build your solution quickly, without the need t…
Identifies the bytes that Microsoft Defender flags on.
SharpSploit is a .NET post-exploitation library written in C#
Local Service to SYSTEM privilege escalation from Windows 7 to Windows 10 / Server 2019
Run PowerShell with rundll32. Bypass software restrictions.
KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).
rasta-mouse / ThreatCheck
Forked from matterpreter/DefenderCheckIdentifies the bytes that Microsoft Defender / AMSI Consumer flags on.
A repository with my notable code snippets for Offensive Security's PEN-300 (OSEP) course.
SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.
This program is designed to demonstrate various process injection techniques
Writing custom backdoor payloads with C# - Defcon 27 Workshop
A method of bypassing EDR's active projection DLL's by preventing entry point exection
