
RemotePotato0
Windows Privilege Escalation from User to Domain Admin.

Windows Privilege Escalation from User to Domain Admin.

PowerShell MachineAccountQuota and DNS exploit tools

Red Team Cheatsheet in constant expansion.

Kage is Graphical User Interface for Metasploit Meterpreter and Session Handler

A C# Command & Control framework

Windows token theft and privilege escalation tool that steals leaked tokens from processes, enables SYSTEM-level access, user impersonation, and…

Ask a TGS on behalf of another user without password

A multithreaded tool designed to identify if credentials are valid, invalid, or local admin valid credentials within a network at-scale via SMB, plus…

Process injection alternative

Collection of beacon BOF written to learn windows and cobaltstrike

Windows Session Hijacking via COM

Pass the Hash to a named pipe for token Impersonation

Weaponizing DCOM for NTLM Authentication Coercions

Weaponizing DCOM for NTLM Authentication Coercions

Retrieve and display information about active user sessions on remote computers. No admin privileges required.

Check-LocalAdminHash is a PowerShell tool that attempts to authenticate to multiple hosts over either WMI or SMB using a password hash to determine…

ProfileHound - BloodHound OpenGraph collector for user profiles stored on domain machines. Make informed decisions about looting secrets by…

Pass the Hash to a named pipe for token Impersonation