Skip to content
@SafeBreach-Labs

SafeBreach Labs

SafeBreach Labs

Popular repositories Loading

  1. PoolParty PoolParty Public

    A set of fully-undetectable process injection techniques abusing Windows Thread Pools

    C++ 986 138

  2. pinjectra pinjectra Public

    Pinjectra is a C/C++ OOP-like library that implements Process Injection techniques (with focus on Windows 10 64-bit)

    C++ 800 157

  3. WindowsDowndate WindowsDowndate Public

    A tool that takes over Windows Updates to craft custom downgrades and expose past fixed vulnerabilities

    Python 642 83

  4. CVE-2024-49113 CVE-2024-49113 Public

    LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113

    Python 430 102

  5. SirepRAT SirepRAT Public

    Remote Command Execution as SYSTEM on Windows IoT Core (releases available for Python2.7 & Python3)

    Python 374 88

  6. EDRaser EDRaser Public

    EDRaser is a powerful tool for remotely deleting access logs, Windows event logs, databases, and other files on remote machines. It offers two modes of operation: automated and manual.

    Python 345 47

Repositories

Showing 10 of 32 repositories
  • CVE-2024-49113 Public

    LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113

    SafeBreach-Labs/CVE-2024-49113’s past year of commit activity
    Python 430 BSD-3-Clause 102 4 2 Updated Jan 2, 2025
  • WindowsDowndate Public

    A tool that takes over Windows Updates to craft custom downgrades and expose past fixed vulnerabilities

    SafeBreach-Labs/WindowsDowndate’s past year of commit activity
    Python 642 BSD-3-Clause 83 5 0 Updated Oct 26, 2024
  • QuickShell Public

    A library and a set of tools for exploiting and communicating with Google's Quick Share devices.

    SafeBreach-Labs/QuickShell’s past year of commit activity
    C++ 34 2 0 0 Updated Aug 27, 2024
  • DoubleDrive Public

    A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files

    SafeBreach-Labs/DoubleDrive’s past year of commit activity
    Python 123 BSD-3-Clause 14 0 0 Updated May 28, 2024
  • CortexVortex Public
    SafeBreach-Labs/CortexVortex’s past year of commit activity
    Python 73 9 0 0 Updated Apr 23, 2024
  • MagicDot Public

    A set of rootkit-like abilities for unprivileged users, and vulnerabilities based on the DOT-to-NT path conversion known issue

    SafeBreach-Labs/MagicDot’s past year of commit activity
    Python 96 BSD-3-Clause 16 0 0 Updated Apr 18, 2024
  • EDRaser Public

    EDRaser is a powerful tool for remotely deleting access logs, Windows event logs, databases, and other files on remote machines. It offers two modes of operation: automated and manual.

    SafeBreach-Labs/EDRaser’s past year of commit activity
    Python 345 BSD-3-Clause 47 0 0 Updated Apr 6, 2024
  • PoolParty Public

    A set of fully-undetectable process injection techniques abusing Windows Thread Pools

    SafeBreach-Labs/PoolParty’s past year of commit activity
    C++ 986 BSD-3-Clause 138 1 0 Updated Dec 11, 2023
  • CloudMiner Public

    Execute code using Azure Automation service without getting charged

    SafeBreach-Labs/CloudMiner’s past year of commit activity
    Python 139 BSD-3-Clause 19 1 0 Updated Nov 8, 2023
  • wd-pretender Public
    SafeBreach-Labs/wd-pretender’s past year of commit activity
    Python 127 BSD-3-Clause 11 1 0 Updated Aug 9, 2023

Most used topics

Loading…