
GlobalUnProtect
Decrypt GlobalProtect configuration and cookie files.

Decrypt GlobalProtect configuration and cookie files.

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

Successor of Undetected-Chromedriver. Providing a blazing fast framework for web automation, webscraping, bots and any other creative ideas which are…

HTML/CSS/JS templates for Browser-In-The-Browser phishing attacks, embedding fake login windows with customizable titles, domains, and phishing links…

USB Army Knife – the ultimate close access tool for penetration testers and red teamers.

Real-time deepfake toolkit for penetration testing of identity verification and video conferencing systems. Supports face swap, image animation, and…

Create fake certs for binaries using windows binaries and the power of bat files

.NET IPv4/IPv6 machine-in-the-middle tool for penetration testers

Spoof SSDP replies and create fake UPnP devices to phish for credentials and NetNTLM challenge/response.

Pass the Hash to a named pipe for token Impersonation

Two WinForms GUI tools for enumerating, searching, and exfiltrating data from M365 environments using application-level OAuth tokens

Pass the Hash to a named pipe for token Impersonation

Python library and client for token manipulations and impersonations for privilege escalation on Windows

Proof-of-concept exploit for Microsoft SharePoint CVE-2026-55040 that forges JWT tokens, bypasses authentication, auto-discovers metadata, and…

A C# utility for interacting with SCOM

In-target C# post-exploitation tool for Microsoft SQL Server (MS SQL / MSSQL) traversing linked-server chains of any depth with cascading login…

Scripts to clone CA certificates for use in HTTPS client attacks.

Repository for CVE-2023-4281 vulnerability.