
cobaltstrike-headless
Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.

Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

More examples using the Impacket library designed for learning purposes.

Red Teaming & Pentesting checklists for various engagements

Infect Shared Files In Memory for Lateral Movement

A windows token impersonation tool

Programmatically start WebClient from an unprivileged session to enable that juicy privesc.

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

Weaponizing DCOM for NTLM Authentication Coercions

Weaponizing DCOM for NTLM Authentication Coercions

tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it

A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY

Firecat is a penetration testing tool that allows you to punch reverse TCP tunnels out of a compromised network.

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and update…