
UltraRealy_with_CVE-2019-1040
Updated version for the tool UltraRealy with support of the CVE-2019-1040 exploit

Updated version for the tool UltraRealy with support of the CVE-2019-1040 exploit

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.


Powershell script for enumerating vulnerable DCOM Applications

Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data.

An automated SMB relay exploitation script.

Curated wordlists for brute-forcing SSH private key filenames, aiding penetration testers in locating keys via LFI or enumeration during lateral…

Extending of metasploit-framework

PowerSploit - A PowerShell Post-Exploitation Framework

Tools and Techniques for Red Team / Penetration Testing

强大的内网渗透辅助工具集-让Yasso像风一样 支持rdp,ssh,redis,postgres,mongodb,mssql,mysql,winrm等服务爆破,快速的端口扫描,强大的web指纹识别,各种内置服务的一键利用(包括ssh完全交互式登陆,mssql提权,redis一键利用,mysql数据库…


Cross-platform network execution toolkit (SMB/Kerberos/WMI/LDAP/DCSync) built on TrustedSec's Titanis - NetExec-style workflow in C#

Exploitation of CVE-2025-29969