
burpFakeIP
Burp Suite extension for spoofing IP addresses in HTTP requests, enabling testing of server-side IP restrictions and bypassing IP-based access…

Burp Suite extension for spoofing IP addresses in HTTP requests, enabling testing of server-side IP restrictions and bypassing IP-based access…

Repository for CVE-2023-4631 vulnerability.

This script helps to pass through the captive portals in public Wi-Fi networks. It hijacks IP and MAC from somebody who is already connected and…

This function combines all the above functions and takes necessary information from the user to change the IP and MAC address, start the responder…

A DNS spoofer tool written in Python3.

Emulates a Cisco ASA Anyconnect VPN service for credential harvesting and VBS payload delivery in red team phishing operations.

Scripts to clone CA certificates for use in HTTPS client attacks.

Impersonate Logged In Accounts & Execute Commands

Insecure Direct Object Reference (IDOR vulnerability) in SOGo Webmail Allows a user to send emails on behalf of another user.

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

Modlishka. Reverse Proxy.

.NET IPv4/IPv6 machine-in-the-middle tool for penetration testers

Phishing with a fake reCAPTCHA

C# Reflective loader for unmanaged binaries.

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Windows token manipulation utility that lists, steals, and impersonates process or user tokens to execute commands as other users, leveraging…

Python library and client for token manipulations and impersonations for privilege escalation on Windows

Rusty Impersonate