
NamedPipePTH
Pass the Hash to a named pipe for token Impersonation

Pass the Hash to a named pipe for token Impersonation

Scripts to clone CA certificates for use in HTTPS client attacks.

CVE-2021-46067 - In Vehicle Service Management System 1.0 an attacker can steal the cookies leading to Full Account Takeover.

Insecure Direct Object Reference (IDOR vulnerability) in SOGo Webmail Allows a user to send emails on behalf of another user.

This script helps to pass through the captive portals in public Wi-Fi networks. It hijacks IP and MAC from somebody who is already connected and…

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

RunasCs - Csharp and open version of windows builtin runas.exe

Phishing with a fake reCAPTCHA

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Python library and client for token manipulations and impersonations for privilege escalation on Windows

Proof-of-concept exploit for Microsoft SharePoint CVE-2026-55040 that forges JWT tokens, bypasses authentication, auto-discovers metadata, and…


Impersonate Logged In Accounts & Execute Commands


Local privilege escalation via PetitPotam (Abusing impersonate privileges).

Rusty Impersonate