
TokenPlayer
Manipulating and Abusing Windows Access Tokens.

Manipulating and Abusing Windows Access Tokens.

This function combines all the above functions and takes necessary information from the user to change the IP and MAC address, start the responder…

CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

USB Army Knife – the ultimate close access tool for penetration testers and red teamers.

Proof-of-concept exploit for Microsoft SharePoint CVE-2026-55040 that forges JWT tokens, bypasses authentication, auto-discovers metadata, and…

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

Insecure Direct Object Reference (IDOR vulnerability) in SOGo Webmail Allows a user to send emails on behalf of another user.

RunasCs - Csharp and open version of windows builtin runas.exe


Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Ask a TGS on behalf of another user without password

A C# implementation of dumping credentials from Windows Credential Manager

Impersonate Logged In Accounts & Execute Commands

Scripts to clone CA certificates for use in HTTPS client attacks.

Rusty Impersonate