
SharpImpersonation
A User Impersonation tool - via Token or Shellcode injection

A User Impersonation tool - via Token or Shellcode injection

A windows token impersonation tool

Leverage WindowsApp createdump tool to obtain an lsass dump

Proof-of-concept exploit for Microsoft SharePoint CVE-2026-55040 that forges JWT tokens, bypasses authentication, auto-discovers metadata, and…

Exploit toolkit for AD CS CVE-2026-54121: low-privileged domain users impersonate a Domain Controller, forge certificates, and compromise the domain…

Modlishka. Reverse Proxy.

Pass the Hash to a named pipe for token Impersonation

Manipulating and Abusing Windows Access Tokens.

Decrypt GlobalProtect configuration and cookie files.

Windows token manipulation utility that lists, steals, and impersonates process or user tokens to execute commands as other users, leveraging…

A C# utility for interacting with SCOM

Proof-of-concept module for CVE-2026-54121 (Certighost), exploiting AD CS enrollment validation via rogue LDAP/SMB listeners to impersonate a Domain…

Rogue Access Point framework for red team engagements and Wi-Fi security testing. Performs Evil Twin, KARMA, and Known Beacons attacks to achieve…

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

HTML/CSS/JS templates for Browser-In-The-Browser phishing attacks, embedding fake login windows with customizable titles, domains, and phishing links…

CredSniper is a phishing framework written with the Python micro-framework Flask and Jinja2 templating which supports capturing 2FA tokens.

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

RunasCs - Csharp and open version of windows builtin runas.exe