Volver al ranking

GTFOBins/GTFOBins.github.io

YAMLgtfobins.org

GTFOBins is a curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems.

post-exploitationlinuxunixbypassgtfobinsbinariesreverse-shellbind-shellexfiltrationredteamblueteam
Crecimiento de estrellas
Estrellas
13.5k
Forks
1.6k
Crecimiento semanal
Issues
6
5k10k
may 2018ene 2021oct 2023jul 2026
README

GTFOBins

CI status CI status Sponsor

GTFOBins is a curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems.

Find the project at: gtfobins.org

Repositorios relacionados
sundowndev/hacker-roadmap

A collection of hacking tools, resources and references to practice ethical hacking.

MIT Licensehackinghacking-tool
15.5k1.7k
Manisso/fsociety

fsociety Hacking Tools Pack – A Penetration Testing Framework

PythonPyPIMIT Licensefsocietyexploitation
12.2k2.1k
malwaredllc/byob

An open-source post-exploitation framework for students, researchers and developers.

PythonPyPIGNU General Public License v3.0encrypted-connectionsplatform-independent
9.5k2.1k
n1nj4sec/pupy

Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C

PythonPyPIOtherpupypython
9k1.9k
Ne0nd0g/merlin

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

GoGo ModulesGNU General Public License v3.0http2command-and-control
5.6k840
FunnyWolf/Viper

Adversary simulation and Red teaming platform with AI

metasploit-frameworkpost-exploitation
viperrtp.com
5.2k687
nicocha30/ligolo-ng

An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.

GoGo ModulesGNU General Public License v3.0redteamtunneling
docs.ligolo.ng
4.8k452
huntergregal/mimipenguin

A tool to dump the login password from the current linux user

COtherpost-exploitationpassword-extraction
4.1k649
EntySec/Ghost

Ghost Framework is an Android post-exploitation framework that exploits the Android Debug Bridge to remotely access an Android device.

PythonPyPIMIT Licenseadbandroid-device
entysec.com
3.4k1.1k
nil0x42/phpsploit

Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor

PythonPyPIGNU General Public License v3.0post-exploitationhacking
2.5k470
Marten4n6/EvilOSX

An evil RAT (Remote Administration Tool) for macOS / OS X.

PythonPyPIGNU General Public License v3.0ratreverse-shell
2.4k487
byt3bl33d3r/SILENTTRINITY

An asynchronous, collaborative post-exploitation agent powered by Python and .NET's DLR

BooGNU General Public License v3.0security-toolsc-sharp
2.3k427