


D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects

.Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

Information released publicly by NCC Group's Full Spectrum Attack Simulation (FSAS) team.

Powerglot encodes offensive powershell scripts using polyglots . Offensive security tool useful for stego-malware, privilege escalation, lateral…

Collection of PowerShell functions a Red Teamer may use in an engagement

A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object


Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

📦 Make security testing of K8s, Docker, and Containerd easier.


StandIn is a small .NET35/45 AD post-exploitation toolkit

Self-developed tools for Lateral Movement/Code Execution

Assist reverse tcp shells in post-exploration tasks

Red Team oriented C# Simple HTTP & WebDAV Server with Net-NTLM hashes capture functionality

A framework for constructing self-spreading binaries