Discover the top trending PowerShell repositories and projects on Github. Explore the latest trends in PowerShell development.
Scoop
A command-line installer for Windows.WSL
Issues found on WSLcore
.NET news, announcements, release notes, and more!runner-images
GitHub Actions runner imagesWindows10Debloater
Script to remove Windows 10 bloatware.blazor
Blazor moved to https://github.com/dotnet/aspnetcorePowerSploit
PowerSploit - A PowerShell Post-Exploitation FrameworkBloodHound
Six Degrees of Domain Adminposh-git
A PowerShell environment for GitEmpire
Empire is a PowerShell and Python post-exploitation agent.nishang
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.winutil
Chris Titus Tech's Windows Utility - Install Programs, Tweaks, Fixes, and Updatesoh-my-posh2
A prompt theming engine for PowershellWin11Debloat
A simple powershell script to remove bloatware apps from windows, disable telemetry, bing in windows search aswell as perform various other changes to declutter and improve your windows experience. This script works for both windows 10 and windows 11.commando-vm
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. [email protected]Debloat-Windows-10
A Collection of Scripts Which Disable / Remove Windows 10 Features and Appsflare-vm
A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.chocolatey
[DEPRECATED - https://github.com/chocolatey/choco] Chocolatey NuGet - Like apt-get, but for windows.K8tools
K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetNuke/zabbix)Win10-Initial-Setup-Script
PowerShell script for automation of routine tasks done after fresh installations of Windows 10 / Server 2016 / Server 2019Invoke-Obfuscation
PowerShell ObfuscatorRedTeaming-Tactics-and-Techniques
Red Teaming Tactics and TechniquesLadon
Ladon大型内网渗透工具,可PowerShell模块化、可CS插件化、可内存加载,无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell,支持批量A段/B段/C段以及跨网段扫描,支持URL、主机、域名列表扫描等。Ladon 11.0内置234个功能,网络资产探测模块32个通过多种协议(ICMP\NBT\DNS\MAC\SMB\WMI\SSH\HTTP\HTTPS\Exchange\mssql\FTP\RDP)以及方法快速获取目标网络存活主机IP、计算机名、工作组、共享资源、网卡地址、操作系统版本、网站、子域名、中间件、开放服务、路由器、交换机、数据库、打印机等信息,高危漏洞检测16个含MS17010、Zimbra、ExchangeSophia-Script-for-Windows
⚡ The most powerful PowerShell module on GitHub for fine-tuning Windows 10 & Windows 11WinPwn
Automation for internal Windows Penetrationtest / AD-Securityk8s-for-docker-desktop
为Docker Desktop for Mac/Windows开启Kubernetes和Istio。PowerShell-Suite
My musings with PowerShellsRDI
Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcodeMailSniper
MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It can be used as a non-administrative user to search their own email, or by an administrator to search the mailboxes of every user in a domain.discover
Custom bash scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux.machinelearning-samples
Samples for ML.NET, an open source and cross-platform machine learning framework for .NET.PrivescCheck
Privilege Escalation Enumeration Script for WindowsPester
Pester is the ubiquitous test and mock framework for PowerShell.PowerUpSQL
PowerUpSQL: A PowerShell Toolkit for Attacking SQL ServerGOAD
game of active directorymimikittenz
A post-exploitation powershell tool for extracting juicy info from memory.awesome-powershell
A curated list of delightful PowerShell modules and resourcesSpotX
Modified Spotify client. Blocks ads and updates, and more.Invoke-PSImage
Encodes a PowerShell script in the pixels of a PNG file and generates a oneliner to executeThanos.sh
if you are Thanos(root), this command could delete half your files randomlysvg-explorer-extension
Extension module for Windows Explorer to render SVG thumbnails, so that you can have an overview of your SVG filesEasy-GPU-PV
A Project dedicated to making GPU Partitioning on Windows easier!WSL
Source code behind the Windows Subsystem for Linux documentation.packer-windows
Windows Packer TemplatesUltimateAppLockerByPassList
The goal of this repository is to document the most common techniques to bypass AppLocker.Sherlock
PowerShell script to quickly find missing software patches for local privilege escalation vulnerabilities.powercat
netshell features all in version 2 powershellPowerTools
PowerTools is a collection of PowerShell projects with a focus on offensive operations.Penetration-Testing-Tools
A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.Win-Debloat-Tools
These scripts will Customize, Debloat and Improve Privacy/Performance and System Responsiveness on Windows 10+.Invoke-TheHash
PowerShell Pass The Hash Utilsdeno_install
Deno Binary Installerwindows-development-environment
🔭 Turning Windows into an environment ready for modern developmentPowerRemoteDesktop
Remote Desktop entirely coded in PowerShell.Extras
📦 The Extras bucket for Scoop.Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.BadBlood
BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of the tool is a domain similar to a domain in the real world. After BadBlood is ran on a domain, security analysts and engineers can practice using tools to gain an understanding and prescribe to securing Active Directory. Each time this tool runs, it produces different results. The domain, users, groups, computers and permissions are different. Every. Single. Time.sysmon-modular
A repository of sysmon configuration modulesErebus
CobaltStrike后渗透测试插件PoshC2
A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.GDK
Microsoft Public GDKMicroBurst
A collection of scripts for assessing Microsoft Azure securityNetRipper
NetRipper - Smart traffic sniffing for penetration testersicebreaker
Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environmentVirtualization-Documentation
Place to store our documentation, code samples, etc for public consumption.Main
📦 The default bucket for Scoop.vulnerable-AD
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local labwindows-dev-box-setup-scripts
Scripts to simplify setting up a Windows developer boxRed_Team
Some scripts useful for red team activitiesDomainPasswordSpray
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAREFUL NOT TO LOCKOUT ACCOUNTS!win10script
This is the Ultimate Windows 10 Script from a creation from multiple debloat scripts and gists from github.redsnarf
RedSnarf is a pen-testing / red-teaming tool for Windows environmentspsake
A build automation tool written in PowerShellboxstarter
Repeatable, reboot resilient windows environment installations made easy using Chocolatey packagesSessionGopher
SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, SuperPuTTY, FileZilla, and Microsoft Remote Desktop. It can be run remotely or locally.Powermad
PowerShell MachineAccountQuota and DNS exploit toolsPowerSharpPack
luckystrike
A PowerShell based utility for the creation of malicious Office macro documents.bashbunny-payloads
The Official Bash Bunny Payload Repositorywindowsterminal-shell
Install/uninstall scripts for Windows Terminal context menu itemsAutomatedLab
AutomatedLab is a provisioning solution and framework that lets you deploy complex labs on HyperV and Azure with simple PowerShell scripts. It supports all Windows operating systems from 2008 R2 to 2022, some Linux distributions and various products like AD, Exchange, PKI, IIS, etc.Exploits
Windows ExploitsSecurity-Datasets
Re-play Security Eventsat-ps
Adversary Tactics - PowerShell Trainingarchitecture-center
Open Source documentation for the Azure Architecture Center on Microsoft DocsJAWS
JAWS - Just Another Windows (Enum) ScriptFido
A PowerShell script to download Windows or UEFI Shell ISOsAzure-Red-Team
Azure Security Resources and NotesReverseTCPShell
PowerShell ReverseTCP Shell - FrameworkDeepBlueCLI
windows_hardening
HardeningKitty and Windows Hardening Settingscpp-docs
C++ DocumentationTerminal-Icons
A PowerShell module to show file and folder icons in the terminalcmd-colors-solarized
Solarized color settings for Windows command promptNetNTLMtoSilverTicket
SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver TicketADAPE-Script
Active Directory Assessment and Privilege Escalation Scriptcobalt-arsenal
My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+windows-docker-machine
Work with Windows containers and LCOW on Mac/Linux/Windowsred-team-scripts
A collection of Red Team focused tools, scripts, and notesWMImplant
This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported is translated into a WMI-equivalent for use on a network/remote machine. WMImplant is WMI based.microsoft
C#, Python, TypeScriptdotnet
C#, PowerShell, TypeScriptMicrosoftDocs
PowerShell, C#, HTMLScoopInstaller
PowerShell, C#, HTMLChrisTitusTech
Shell, Lua, PowerShellSycnex
PowerShellmandiant
Python, C++, CAzure
C#, Python, TypeScriptPowerShellMafia
PowerShellsamratashok
PowerShell, PythonBloodHoundAD
C#, PowerShell, Pythonactions
TypeScript, JavaScript, PowerShellk8gege
Python, PowerShell, Rubydafthack
PowerShell, Python, PHPfarag2
PowerShell, VBScript, JavaScriptamd64fox
PowerShell, Python, Batchfiledahlbyk
C#, PowerShell, JavaScriptEmpireProject
PowerShell, JavaScript, JavaEvotecIT
PowerShell, C#, HTMLNetSPI
Java, PowerShell, Pythondanielbohannon
PowerShellS3cur3Th1sSh1t
C#, PowerShell, NimMicrosoftLearning
PowerShell, C#, Jupyter NotebookW4RH4WK
C, C++, HTMLhak5
Shell, C, PowerShellLove Open Source and this site? Check out how you can help us