
evil-winrm
The ultimate WinRM shell for hacking/pentesting

The ultimate WinRM shell for hacking/pentesting

PowerShell Script to automatically abuse the BadSuccessor vulnerability (CVE-2025-53779)

PowerShell proof-of-concept for CVE-2023-23397 that exploits Outlook's ReminderSoundFile property to intercept Net-NTLMv2 hashes via SMB or WebDAV…

AD CS exploitation related stuff goes here

Powershell tool to automate Active Directory enumeration.


A fork of the great TokenTactics with support for CAE and token endpoint v2

PowerShell module for administering and auditing Azure AD and Office 365, enabling token manipulation, user enumeration, and security assessments of…

Active Directory password filter featuring breached password checking and custom complexity rules

C# implementation of SMBExec for remote command execution on Windows targets using NTLM password hashes, enabling lateral movement and pass-the-hash…

Cross-platform interactive shell for Microsoft Defender for Endpoint Live Response

Native Nim WinRM shell with NTLM, Kerberos, file transfer, in-memory helpers, and AD/OPSEC reporting

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…

PowerShell Pass The Hash Utils

A tool for checking if MFA is enabled on multiple Microsoft Services

PowerShell MachineAccountQuota and DNS exploit tools

Dominate Active Directory with PowerShell.

Abusing Azure services over C2