
Invoke-LinkSpray
Powershell script to create malicious SMB or WebDAV links to steal NTLM authentication
authenticationpenetration-testingphishing+2

Powershell script to create malicious SMB or WebDAV links to steal NTLM authentication
PowerShell Script to automatically abuse the BadSuccessor vulnerability (CVE-2025-53779)

Powershell Script to build token for CVE-2019-1619

A PowerShell script to perform PKINIT authentication with the Windows API from a non domain-joined machine.


A tool for checking if MFA is enabled on multiple Microsoft Services

Abusing Azure services over C2

C# implementation of SMBExec for remote command execution on Windows targets using NTLM password hashes, enabling lateral movement and pass-the-hash…