
ip-obfuscation
Generates obfuscated IP addresses and URLs using DWORD, octal, hex, IPv6-mapped, and fake-domain @ tricks for penetration testing, phishing…

Generates obfuscated IP addresses and URLs using DWORD, octal, hex, IPv6-mapped, and fake-domain @ tricks for penetration testing, phishing…

Burp Suite extension for spoofing IP addresses in HTTP requests, enabling testing of server-side IP restrictions and bypassing IP-based access…

C# Reflective loader for unmanaged binaries.

Automates phishing and post-phishing activities with an almost-transparent reverse proxy that dynamically mirrors target web apps and interacts with…

Frameless Browser‑in‑the‑Browser (BitB) - No iframes, no frame‑busting issues. A single‑script Shadow DOM / MutationObserver library for realistic…

A local MITM proxy that lets you control TLS fingerprints (JA3/JA4), HTTP/2 fingerprints, HTTP header order, and User-Agent — all from a single YAML…

Exploit toolkit for AD CS CVE-2026-54121: low-privileged domain users impersonate a Domain Controller, forge certificates, and compromise the domain…

Manipulating and Abusing Windows Access Tokens.

RunasCs - Csharp and open version of windows builtin runas.exe

Stop Windows Defender programmatically

A windows token impersonation tool

Local privilege escalation via PetitPotam (Abusing impersonate privileges).

Rusty Impersonate

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Some scripts to abuse kerberos using Powershell

Windows token manipulation utility that lists, steals, and impersonates process or user tokens to execute commands as other users, leveraging…


Automates vishing calls via Discord bot and API to intercept SMS one-time passwords, bypassing SMS verification for PayPal, Google, Instagram, and 3D…