
SessionHop
Windows Session Hijacking via COM

Windows Session Hijacking via COM

Fileless Command Execution for Lateral Movement in Nim

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows…

A windows token impersonation tool

RDP client with extended control for automated mouse, keyboard, and clipboard manipulation, file transfer, SOCKS proxy, and remote command execution…

A compact guide to network pivoting for penetration testings / CTF challenges.

CVE-2025-54914 exposes a critical flaw in Azure Networking that allows attackers to escalate privileges and control routing across subnets. The…

Windows token theft and privilege escalation tool that steals leaked tokens from processes, enables SYSTEM-level access, user impersonation, and…

Generates meeting requests taking advantage of CVE-2023-23397. This requires the outlook thick client to send.

The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…

Python script that patches the termsrv.dll file on Windows to enable multiple concurrent RDP sessions, supporting Windows 10 versions 1703 through…

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM,…

Modified dropbear server which acts as a client and allows authless login

This tool will setting up your backdoor/rootkits when backdoor already setup it will be hidden your spesisifc process,unlimited your session in…

Updated version for the tool UltraRealy with support of the CVE-2019-1040 exploit

Credentials gathering tool automating remote procdump and parse of lsass process.

Exploits the Windows Server 2025 dMSA privilege escalation vulnerability to enumerate writable OUs, escalate to arbitrary domain users, extract…