
TokenPlayer
Manipulating and Abusing Windows Access Tokens.

Manipulating and Abusing Windows Access Tokens.

Track the GPS location of the user's smartphone or PC and capture a picture of the target, along with IP and device information.

This function combines all the above functions and takes necessary information from the user to change the IP and MAC address, start the responder…

CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

Living Under the Land on Linux ~ Bsides Belfast/Vienna 2025

The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.

USB Army Knife – the ultimate close access tool for penetration testers and red teamers.

CredSniper is a phishing framework written with the Python micro-framework Flask and Jinja2 templating which supports capturing 2FA tokens.

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

A next-generation HTTP stealth proxy which perfectly cloaks requests as the Chrome browser across all layers of the stack.

Automates phishing and post-phishing activities with an almost-transparent reverse proxy that dynamically mirrors target web apps and interacts with…

Create fake certs for binaries using windows binaries and the power of bat files

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Pass the Hash to a named pipe for token Impersonation

Pass the Hash to a named pipe for token Impersonation

Exploit toolkit for AD CS CVE-2026-54121: low-privileged domain users impersonate a Domain Controller, forge certificates, and compromise the domain…