Red Team Security Tools
Browse Cybersecurity Tools in this category
24 InfoSec Tools
CarbonCopy
by paranoidninja
A tool which creates a spoofed certificate of any online website and signs an Executable for AV Evasion. Works for both Windows and Linux
AdvPhishing
by Ignitetch
This is Advance Phishing Tool ! OTP PHISHING
msldap
by skelsec
LDAP library for auditing MS AD
Empire
by BC-SECURITY
Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.
merlin
by Ne0nd0g
Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.
PoshC2
by nettitude
A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.
PEASS-ng
by peass-ng
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
RedCloud-OS
by RedTeamOperations
RedCloudOS is a Cloud Adversary Simulation Operating System for Red Teams to assess the Cloud Security of Leading Cloud Service Providers (CSPs)
atomic-red-team
by redcanaryco
Small and highly portable detection tests based on MITRE's ATT&CK.
evilginx2
by kgretzky
Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
shad0w
by bats3c
A post exploitation framework designed to operate covertly on heavily monitored environments
Lodestar-Forge
by c0nf1den71al
Easy to use, open-source infrastructure management platform, crafted specifically for red team engagements.
smbcrawler
by SySS-Research
smbcrawler is no-nonsense tool that takes credentials and a list of hosts and 'crawls' (or 'spiders') through those shares
Havoc
by HavocFramework
The Havoc Framework
sliver
by BishopFox
Adversary Emulation Framework
DojoLoader
by naksyn
Generic PE loader for fast prototyping evasion techniques
Nimbo-C2
by itaymigdal
Nimbo-C2 is yet another (simple and lightweight) C2 framework
Sandman
by Idov31
Sandman is a NTP based backdoor for red team engagements in hardened networks.
dnstwist
by hazcod
A tool to monitor for potential spear phishing domains and send to Slack.
shell_bringer
by onurcangnc
ShellBringer is a Python script designed for penetration testers. It facilitates the creation and management of reverse shell payloads, automating listener setup across multiple platforms.
evil-winrm-py
by adityatelange
Execute commands interactively on remote Windows machines using the WinRM protocol
ImpulsiveDLLHijack
by knight0x07
C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can later be weaponized during Red Team Operations to evade EDR's.
linux-smart-enumeration
by diego-treitos
Linux enumeration tool for pentesting and CTFs with verbosity levels
Crassus
by vu-ls
An MCP server implementation