

Advanced phishing tool combining OAuth Device Code authentication flow with QR codes to harvest Microsoft authentication tokens via MFA update…

Stop Windows Defender programmatically

Spoof file icons and extensions in Windows

Herramienta ideal para el despliegue automatizado de un Rogue AP con capacidad de selección de plantilla + 2FA. No requiere de conexión cableada.

OTP BOT Bypass SMS verifications from Paypal, Instagram, Snapchat, Google, 3D Secure, and many others...

Some scripts to abuse kerberos using Powershell

Local privilege escalation via PetitPotam (Abusing impersonate privileges).

Manipulating and Abusing Windows Access Tokens.

BOF to impersonate TrustedInstaller via DISM API trigger and thread impersonation

Pastejacking - PasteZort

Leverage WindowsApp createdump tool to obtain an lsass dump

Simple shell script to "clone" X.509 certificates

Rusty Impersonate

Cobalt Strike BOF that spawns a process using another user's token and injects Beacon shellcode, enabling post-exploitation and lateral movement via…

CVE-2020-20093; 20094; 20095; 20096, 2022-28345 RTLO Injection URI Spoofing

flash钓鱼源码 中文+英文