
CVE-2023-23397-POC-Powershell
PowerShell script to exploit CVE-2023-23397 by sending or saving malicious Outlook calendar invitations that trigger NTLM credential leakage via the…

PowerShell script to exploit CVE-2023-23397 by sending or saving malicious Outlook calendar invitations that trigger NTLM credential leakage via the…

A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering

Database Driven DNS Server with a Web UI

A low pin count sniffer for ICEStick - targeting TPM chips

DLL Password Filter Implant with Exfiltration Capabilities

Android RAT

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

Python3 utility for creating zip files that smuggle additional data for later extraction

Golang binary for data exfiltration with ICMP protocol (+ ICMP bindshell, http over ICMP tunneling, ...)

A collection of tools for dealing with TrickBot

A Post exploitation tool written in C# uses either CIM or WMI to query remote systems.

Real Time Threat Monitoring Tool


Azure Post Exploitation Framework

More examples using the Impacket library designed for learning purposes.

Universal Dynamic Virtual Channel connector for Remote Desktop Services

Fully undetected grabber (grabs wallets, passwords, cookies, modifies discord client etc.)

Bypassing NTFS permissions to read any files as unprivileged user.