
M365Pwned
Two WinForms GUI tools for enumerating, searching, and exfiltrating data from M365 environments using application-level OAuth tokens

Two WinForms GUI tools for enumerating, searching, and exfiltrating data from M365 environments using application-level OAuth tokens

Proof-of-concept exploit for Microsoft SharePoint CVE-2026-55040 that forges JWT tokens, bypasses authentication, auto-discovers metadata, and…

Python library and client for token manipulations and impersonations for privilege escalation on Windows

Pass the Hash to a named pipe for token Impersonation

Pass the Hash to a named pipe for token Impersonation

Windows token manipulation utility that lists, steals, and impersonates process or user tokens to execute commands as other users, leveraging…

A User Impersonation tool - via Token or Shellcode injection

A windows token impersonation tool

Cobalt Strike BOF that spawns a process using another user's token and injects Beacon shellcode, enabling post-exploitation and lateral movement via…

A C# utility for interacting with SCOM

Stop Windows Defender programmatically

Manipulating and Abusing Windows Access Tokens.