
BadSamba
This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB share.

This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB share.

A WiFi Pineapple infecting worm.

.NET post-exploitation toolkit for Active Directory reconnaissance and exploitation

Pentest-Command

From deobfuscating code.js to root, CVE-2023-0386

Hook PasswordChangeNotify


MakeMeEnterpriseAdmin

An automated SMB relay exploitation script.


PoC to tunnel the Meterpreter reverse HTTP shell over RDP Virtual Channels

Offline command line lookup utility for GTFOBins (https://github.com/GTFOBins/GTFOBins.github.io), LOLBAS (https://github.com/LOLBAS-Project/LOLBAS),…

Post-exploit a compromised etcd, gain persistence and remote shell to nodes.

LOKI (Limited Obstructive Keyboard Impersonator) is a RDP File Transfer Tool Using Keypresses

Phantom Tap (PhanTap) - an ‘invisible’ network tap aimed at red teams