Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Invoke-sAMSpoofing — CVE-2021-42287/CVE-2021-42278 exploits in powershell | Kitploit
Tools/GitHubGitHub/xiaolichan/invoke-samspoofing
Privilege EscalationExploitationLateral MovementPost-ExploitationPenetration TestingPayload Development
GitHubxiaolichan/invoke-samspoofing

Invoke-sAMSpoofing

CVE-2021-42287/CVE-2021-42278 exploits in powershell

View Repository
39894 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Invoke-sAMSpoofing

CVE-2021-42287/CVE-2021-42278 exploits in powershell

Table of content

  • Overview
  • Menu
  • Screenshots
  • References

Overview

A simple script to attack AD with CVE-2021-42287/CVE-2021-42278 exploits automatically.

Menu

  • Invoke-sAMSpooofing
  • Invoke-GoldenTicket
  • Invoke-GoldenTips
  • RemoveMachineAccount
  • Invoke-Rubeus
  • ADSIHound
  • Invoke-DCSync

Screenshots

  • Invoke-sAMSpooofing
    image image

  • Invoke-GoldenTicket (Just krbtgt hashes needed) image image

    Golden ticket also injected into memory and generate to file.
    image

  • Invoke-GoldenTips
    image

  • RemoveMachineAccount (Need domain admins privileges, also you can do this after create golden ticket.)
    image

  • Invoke-Rubeus
    image

References

  • 3gstudent: Retrieves all users ntlm hashes from AD
  • eXploit.ph: cve-2021-42287-cve-2021-42278-weaponisation
  • PowerSharpPack
  • Powermad
  • Rubeus
Download Tool