
CVE-2019-13498
CVE-2019-13498

CVE-2019-13498

A windows token impersonation tool

Havoc C2 plugin that creates a hidden Windows desktop, streams it to a browser viewer, and injects mouse/keyboard input for covert remote control.

Leverage WindowsApp createdump tool to obtain an lsass dump

Python library and client for token manipulations and impersonations for privilege escalation on Windows

RunasCs - Csharp and open version of windows builtin runas.exe

A C# implementation of dumping credentials from Windows Credential Manager

Windows token manipulation utility that lists, steals, and impersonates process or user tokens to execute commands as other users, leveraging…

Manipulating and Abusing Windows Access Tokens.

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports…

Spoof SSDP replies and create fake UPnP devices to phish for credentials and NetNTLM challenge/response.

Proof-of-concept module for CVE-2026-54121 (Certighost), exploiting AD CS enrollment validation via rogue LDAP/SMB listeners to impersonate a Domain…

CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

Phishing with a fake reCAPTCHA

Local privilege escalation via PetitPotam (Abusing impersonate privileges).

Proof-of-concept exploit for Microsoft SharePoint CVE-2026-55040 that forges JWT tokens, bypasses authentication, auto-discovers metadata, and…