

transform your payload.exe into one fake word doc (.ppt)

Phishing with a fake reCAPTCHA

Stop Windows Defender programmatically

Some scripts to abuse kerberos using Powershell

Advanced phishing tool combining OAuth Device Code authentication flow with QR codes to harvest Microsoft authentication tokens via MFA update…

A windows token impersonation tool

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Ask a TGS on behalf of another user without password

Local privilege escalation via PetitPotam (Abusing impersonate privileges).

OTP BOT Bypass SMS verifications from Paypal, Instagram, Snapchat, Google, 3D Secure, and many others...

Manipulating and Abusing Windows Access Tokens.

Pastejacking - PasteZort

BOF to impersonate TrustedInstaller via DISM API trigger and thread impersonation

Rusty Impersonate

Cobalt Strike BOF that spawns a process using another user's token and injects Beacon shellcode, enabling post-exploitation and lateral movement via…

Leverage WindowsApp createdump tool to obtain an lsass dump

A C# implementation of dumping credentials from Windows Credential Manager