

Pass the Hash to a named pipe for token Impersonation

A C2 post-exploitation framework

Collection of beacon BOF written to learn windows and cobaltstrike

Check for valid credentials across a network over SMB

Encrypted C2 framework for post-exploitation and lateral movement, supporting PowerShell implants and custom modules for red team engagements.

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Fileless lateral movement tool using WMI Event Subscriptions to execute .NET assemblies in memory, with shellcode injection via named pipes for…

A Post exploitation tool written in C# uses either CIM or WMI to query remote systems.

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

Run Powershell without software restrictions.

DLL that hooks NTLM and Kerberos authentication in lsass.exe to inject a backdoor hash, enabling persistent authenticated access on Windows systems.

WIP Post-exploitation framework tailored for hypervisors.

AzureRT - A Powershell module implementing various Azure Red Team tactics

Bash-based post-exploitation tool for semi-automated network pivoting, enabling lateral movement through compromised systems during penetration tests.

SSH spreading made easy for red teams in a hurry

Abuse SCCM servers to deploy malicious applications to managed hosts for lateral movement and red team operations.